CVE-2026-76338 | Splunk Enterprise up to 9.4.13/10.0.8/10.2.5/10.4.1 Distributed Search Authentication Token Endpoint improper authentication

SecurityVulns

A vulnerability, which was classified as very critical, was found in Splunk Enterprise up to 9.4.13/10.0.8/10.2.5/10.4.1. The affected element is an unknown function of the component Distributed Search Authentication Token Endpoint. Such manipulation leads to improper authentication.

This vulnerability is uniquely identified as CVE-2026-76338. The attack can be launched remotely. No exploit exists.

You should upgrade the affected component.VulDB Recent EntriesRead More