CVE-2026-76281

LOWCVSS 5.3 · MEDIUM

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Improper Access Control. Splunk addressed multiple internally identified vulnerabilities in Splunk Enterprise versions 10.4.3, 10.2.7, 10.0.10, and 9.4.15. The vulnerabilities are grouped by Common Weakness Enumeration (CWE), with one Common Vulnerabilities and Exposures (CVE) identifier assigned to each group. See Details for more information.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-284

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 2 mentions across 1 observed day

What's happening

  • 2 total mentions across 1 day

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-10-08: 210-08
Referenced assets2 URLs
Full discourse2 posts
  • hi^^@collysucker

    https://advisory.splunk.com 5 new Security Advisories for Cisco Splunk Some of these are quite critical, e.g. CVE-2026-76281 & CVE-2026-76268 with each CVSS 9.8 #infosec #splunk

    0000150
    221 followersView on X
  • Daily CyberSecurity@Daily_CyberSec

    Splunk fixes 22 Splunk Enterprise vulnerabilities, including critical Patroni API flaw CVE-2026-76268 and CVE-2026-76281. Upgrade to 10.4.3 now. #Splunk #SplunkEnterprise #SIEM #CVE202676268 #CVE202676281 #RCE #PatchNow #Vulnerability https://securityonline.info/splunk-enterprise-vulnerabilities-october-2026/

    00000310
    13.0K followersView on X

Explore more