CVE-2026-76377 | Splunk Azure AD Graph App for Splunk SOAR up to 2.5.2 Reset Password Action temp_password missing encryption
A vulnerability was found in Splunk Azure AD Graph App for Splunk SOAR up to 2.5.2. It has been declared as problematic. The impacted element is an unknown function of the component Reset Password Action. Executing a manipulation of the argument temp_password can lead to missing encryption of sensitive data.
This vulnerability is tracked as CVE-2026-76377. The attack can be launched remotely. No exploit exists.
It is recommended to upgrade the affected component.VulDB Recent EntriesRead More