CVE-2026-76396
CVE-2026-76396: 1 tracked advisory record across Splunk. Compare vendor sources and published fix guidance.
Compare the source-linked records below. Ratings and product/version details belong to each advisory; they are not a single CVE-wide score or proof that every listed product is affected. How VulniPulse collects and checks evidence.
Vendor advisory comparison
Splunk
1 advisory- Advisory severityHigh7.5
High [CVE-2026-76396] Improper Access Control through Scheduled Searches in Splunk AI Toolkit
CVE-2026-76396Source published Source updated
In Splunk AI Toolkit versions below 6.0.0, a user that holds a role with the schedule_search capability could cause a scheduled search to load and deserialize a model file through the apply search command. The improper access control is possible because Splunk AI Toolkit does not mark the apply search command as risky. For more information see Troubleshoot the AI Toolkit ( ) in the Splunk documentation.
- Affected products in this advisory
- Splunk AI Toolkit
- Source-reported affected versions
- Splunk AI Toolkit 5.7 before 6.0.0
- Source-reported fixed versions
- 6.0.0
- Mitigation guidance
- In Splunk AI Toolkit versions below 6.0.0, a user that holds a role with the schedule_search capability could cause a scheduled search to load and deserialize a model file through the apply search command.
- The improper access control is possible because Splunk AI Toolkit does not mark the apply search command as risky.
- For more information see Troubleshoot the AI Toolkit (https://help.splunk.com/en/splunk-enterprise/apply-machine-learning/use-ai-toolkit/5.7.3/troubleshooting-the-ai-toolkit/troubleshoot-the-ai-toolkit) in the Splunk documentation.
Android app · Google Play
Monitor future Splunk CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 34 official vendor sources and 160+ reviewed platform categories.