CYBERHAWK / CVE / CVE-2026-20258
CVE-2026-20258
HIGH
CVSS 7.1
other
The flaw
In Splunk Enterprise versions below 10.2.4, 10.0.7, 9.4.12, and 9.3.13, and Splunk Cloud Platform versions below 10.3.2512.11, 10.2.2510.15, 10.1.2507.23, and 9.3.2411.132, a low-privileged user that does not hold the "admin" or "power" Spl
What to do
Review advisory and patch per vendor guidance.
References
In the news
- Multiple Splunk Enterprise Vulnerabilities Allow Attackers to Execute Malicious ScriptCyberSecurityNews · 2026-06-11
- Splunk Products Multiple VulnerabilitiesHong Kong Computer Emergency Response Team Coordination Centre · 2026-06-12