Medium severity6.5NVD Advisory· Published Oct 7, 2026
CVE-2026-76265
CVE-2026-76265
Description
In Splunk Enterprise versions below 10.4.3, 10.2.7, 10.0.10, and 9.4.15, and Splunk Secure Gateway versions below 3.10.11, 3.9.25, and 3.8.72, a user who does not hold the "admin" or "power" Splunk roles could access privileged Splunk Secure Gateway functionality. With this access, the user could cause Splunk Secure Gateway to sign attacker-controlled payloads. The vulnerability is possible because multiple Splunk Secure Gateway Representational State Transfer (REST) API endpoints do not enforce authorization requirements before processing requests.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: <10.4.3, <10.2.7, <10.0.10, <9.4.15
- Range: <3.10.11, <3.9.25, <3.8.72
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.