Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2791 articles · 111153 vulns · 38/41 feeds (7d)
← Back to list
6.8
CVE-2026-20144PATCHED
splunk · splunk

In Splunk Enterprise versions below 10.2.0, 10.0.2, 9.4.7, 9.3.8, and 9.2.11, and Splunk Cloud Platform versions below 10.2.2510.0, 10.1.2507.11, 10.0.2503.9, and 9.3.2411.120, a user of a Splunk Sear

Description

In Splunk Enterprise versions below 10.2.0, 10.0.2, 9.4.7, 9.3.8, and 9.2.11, and Splunk Cloud Platform versions below 10.2.2510.0, 10.1.2507.11, 10.0.2503.9, and 9.3.2411.120, a user of a Splunk Search Head Cluster (SHC) deployment who holds a role with access to the the Splunk _internal index could view the Security Assertion Markup Language (SAML) configurations for Attribute query requests (AQRs) or Authentication extensions in plain text within the conf.log file, depending on which feature is configured.

Affected Products

VendorProductVersions
splunksplunk< 9.2.11, < 9.3.8, < 9.4.7, < 10.0.2, < 9.3.2411.120, < 10.0.2503.9, < 10.1.2507.11

References

  • https://advisory.splunk.com/advisories/SVD-2026-0209(Vendor Advisory)
CVSS 3.16.8 MEDIUM
VectorCVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CISA KEV❌ No
Actively exploited❌ No
Patch available
9.2.119.3.89.4.710.0.29.3.2411.12010.0.2503.910.1.2507.11
CWECWE-532
PublishedFeb 18, 2026
Last enriched14d ago
Trending Score0
Source articles0
Independent0
Info Completeness9/14
Missing: epss, kev, exploit, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

HIGHCVE-2026-20205EXP
Sensitive Information Disclosure in ''_internal'' index in Splunk MCP Server app
Trending: 51
HIGHCVE-2026-20204EXP
Improper Handling and Insufficient Isolation of Specific Temporary Files in Splunk Enterprise
Trending: 50
MEDIUMCVE-2026-20202EXP
Improper Input Validation during User Account Creation in Splunk Enterprise
Trending: 47
MEDIUMCVE-2026-20203EXP
Improper Access Control in Data Model Acceleration in Splunk Enterprise
Trending: 42
PRE-CVE
Multiple vulnerabilities in Splunk products
Trending: 20

Pin to Dashboard

Verification

State: verified
Confidence: 100%

Vulnerability Timeline

CVE Published
Feb 18, 2026
Patch Available
Feb 23, 2026
Discovered by ZDM
Apr 1, 2026