Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Splunk — Vulnerabilities & Security Advisories 283

Browse all 283 CVE security advisories affecting Splunk. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Splunk operates primarily as a data analytics platform designed for searching, monitoring, and analyzing machine-generated big data via a web interface. Its architecture, which integrates complex data ingestion pipelines with extensive third-party app ecosystems, has historically exposed it to diverse vulnerability classes. Recorded Common Vulnerabilities and Exposures (CVEs) frequently involve remote code execution, cross-site scripting, and privilege escalation flaws, often stemming from improper input validation or insecure default configurations in its web components. While no single catastrophic breach defines its history, the sheer volume of disclosed flaws highlights systemic risks in its expansive feature set. Security practitioners must rigorously patch these instances, as the platform’s central role in enterprise observability makes unmitigated vulnerabilities particularly impactful. The current count of 155 CVEs underscores the necessity for continuous configuration auditing and strict access controls to maintain integrity within organizations relying on this infrastructure.

CVE ID Title CVSS Severity Published
CVE-2022-37437 Ingest Actions UI in Splunk Enterprise 9.0.0 disabled TLS certificate validation — Splunk Enterprise CWE-295 7.4 High 2022-08-16
CVE-2022-37439 Malformed ZIP file crashes Universal Forwarders and Splunk Enterprise through file monitoring input — Splunk Enterprise CWE-409 5.5 Medium 2022-08-16
CVE-2022-37438 Information disclosure via the dashboard drilldown in Splunk Enterprise — Splunk Enterprise CWE-200 2.6 Low 2022-08-16
CVE-2022-32152 Splunk Enterprise lacked TLS cert validation for Splunk-to-Splunk communication by default — Splunk Enterprise CWE-295 8.1 High 2022-06-15
CVE-2022-32156 Splunk Enterprise and Universal Forwarder CLI connections lacked TLS cert validation — Splunk Enterprise CWE-295 8.1 High 2022-06-14
CVE-2022-27183 Reflected XSS in a query parameter of the Monitoring Console — Splunk Enterprise CWE-79 8.8 High 2022-05-06
CVE-2022-26889 Path Traversal in search parameter results in external content injection — Splunk Enterprise CWE-20 8.8 High 2022-05-06
CVE-2022-26070 Error message discloses internal path — Splunk Enterprise CWE-200 4.3 Medium 2022-05-06
CVE-2021-42743 Local privilege escalation via a default path in Splunk Enterprise Windows — Splunk Enterprise CWE-427 8.8 High 2022-05-06
CVE-2021-33845 Username enumeration through lockout message in REST API — Splunk Enterprise CWE-203 5.3 Medium 2022-05-06
CVE-2021-31559 S2S TcpToken authentication bypass — Splunk Enterprise CWE-288 7.5 High 2022-05-06
CVE-2021-26253 Bypass of Splunk Enterprise's implementation of DUO MFA — Splunk Enterprise CWE-287 8.1 High 2022-05-06
CVE-2021-3422 Indexer denial-of-service via malformed S2S request — Splunk Enterprise CWE-125 7.5 High 2022-03-25

This page lists every published CVE security advisory associated with Splunk. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.