Skip to main content

Threats Tagged 'cve-2026-76348'

View all threats tagged with 'cve-2026-76348'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cve-2026-76348

Threats Tagged 'cve-2026-76348'

Click on any threat for detailed analysis and mitigation recommendations

Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14 contain a vulnerability where users with a role that includes the high-privilege list_search_head_clustering capability can send read requests to Search Head Cluster member control endpoints and inadvertently change cluster state. This occurs because these endpoints do not require a state-changing HTTP request method before applying read-only authorization, potentially leading to denial of service.

Join the discussion

CVE-2026-76348 is a vulnerability in Splunk Enterprise versions prior to 10.4.2, 10.2.6, 10.0.9, and 9.4.14. It allows users with the high-privilege list_search_head_clustering role to send read requests to Search Head Cluster member control endpoints and change cluster state without proper authorization checks. This can lead to denial of service conditions. The issue arises because these endpoints do not require a state-changing HTTP request type before applying read-only authorization.

Join the discussion

Showing 1 to 2 of 2 results

Filters:Tag: cve-2026-76348
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses