chiprook
← Security
SecurityOctober 8, 2026, 12:26

Splunk patches unauthenticated RCE in its own SIEM

Splunk released fixes for CVE-2026-76268 (CVSS 9.1), an unauthenticated RCE in Splunk Enterprise via the Patroni REST API on search head cluster members. Versions 10.4.0–10.4.2 and 10.2.0–10.2.6 are affected; fixes ship in 10.4.3, 10.2.7, 10.0.10 and 9.4.15.

Splunk patches unauthenticated RCE in its own SIEM
#Splunk
Read next
Security

Imply Lumi connects SIEM tools and AI agents to more security data

Security

Three Langflow flaws rated CVSS 9.8 allow unauthenticated RCE

Security

CVE-2026-75937: unauthenticated root RCE in Digi routers scored 9.4

Security

CVE-2026-95675: Unauthenticated root RCE in D-Link DAP-1360