CVE-2026-76285
Last modified
CVE-2026-76285 is a vulnerability of currently unknown severity. Improper Adherence to Coding Standards. Splunk addressed multiple internally identified vulnerabilities in Splunk Enterprise versions 10.4.3, 10.2.7, 10.0.10, and 9.4.15. EPSS estimates a 0.14% chance of exploitation in the next 30 days.
Description
Improper Adherence to Coding Standards. Splunk addressed multiple internally identified vulnerabilities in Splunk Enterprise versions 10.4.3, 10.2.7, 10.0.10, and 9.4.15. The vulnerabilities are grouped by Common Weakness Enumeration (CWE), with one Common Vulnerabilities and Exposures (CVE) identifier assigned to each group. See Details for more information.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Splunk | Splunk Enterprise | >= 10.4, < 10.4.3; >= 10.2, < 10.2.7; >= 10.0, < 10.0.10; >= 9.4, < 9.4.15 |
References
Timeline
- Published
- Last Modified
- Status
- Awaiting Analysis
Frequently Asked Questions
What is CVE-2026-76285?
How severe is CVE-2026-76285?
How do I fix CVE-2026-76285?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-7628A vulnerability was detected in crazyrabbitLTC mcp-code-revi…6.3
- CVE-2026-76280In Splunk Enterprise versions below 10.4.3, 10.2.7, 10.0.10,…6.3
- CVE-2026-76281Improper Access Control. Splunk addressed multiple internall…5.3
- CVE-2026-76282Improper Control of a Resource Through its Lifetime. Splunk …8.8
- CVE-2026-76283Protection Mechanism Failure. Splunk addressed multiple inte…7.6
- CVE-2026-76284Improper Neutralization. Splunk addressed multiple internall…
- CVE-2026-76286In Splunk MCP Server versions below 1.2.1, Splunk MCP Server…5.3
- CVE-2026-7629A flaw has been found in kleneway awesome-cursor-mpc-server …6.3
- CVE-2026-7630A vulnerability has been found in innocommerce InnoShop up t…7.3
- CVE-2026-76309In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, …4.3
- CVE-2026-7631A vulnerability was found in code-projects Online Hospital M…5.4
- CVE-2026-76310In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, …9.4
Are you affected by CVE-2026-76285?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
