VendorsSplunkai_toolkitall versions
Vulnerabilities

Splunk AI Toolkit

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

12CVEs
CVE-2026-20266
OS Command Injection in the btool Configuration Helper in Splunk AI Toolkit
Published 2026-06-17 · Analyzed
9.1EPSS 0.006
CVE-2026-76395
Remote Code Execution (RCE) through Deserialization of Untrusted Data in the Model Loading REST API in Splunk AI Toolkit
Published 2026-08-19 · Analyzed
8.8EPSS 0.005
CVE-2026-76391
Improper Privilege Management through Agent Run History in Splunk AI Toolkit
Published 2026-08-19 · Undergoing Analysis
8.3EPSS 0.003
CVE-2026-76394
Missing Authorization in Container and Connection Management through the REST API in Splunk AI Toolkit
Published 2026-08-19 · Analyzed
8.3EPSS 0.003
CVE-2026-76397
Improper Access Control in Experiment History through the REST API in Splunk AI Toolkit
Published 2026-08-19 · Analyzed
8.1EPSS 0.003
CVE-2026-76399
Incorrect Permission Assignment for Scheduled Searches in Splunk AI Toolkit
Published 2026-08-19 · Analyzed
8.1EPSS 0.002
CVE-2026-76396
Improper Access Control through Scheduled Searches in Splunk AI Toolkit
Published 2026-08-19 · Analyzed
7.5EPSS 0.002
CVE-2026-20238
Improper Access Control through Role Inheritance in Splunk AI Toolkit app
Published 2026-05-20 · Analyzed
6.5EPSS 0.003
CVE-2026-76393
Race Condition during Model Upload through the REST API in Splunk AI Toolkit
Published 2026-08-19 · Analyzed
5.9EPSS 0.001
CVE-2026-76392
Use of Hard-coded Credentials in Container Connections in Splunk AI Toolkit
Published 2026-08-19 · Analyzed
5.4EPSS 0.002
CVE-2026-20265
Insecure Default Domain Allowlist in Splunk AI Toolkit
Published 2026-06-17 · Analyzed
4.3EPSS 0.002
CVE-2026-76398
Improper Access Control during Experiment History Deletion through the REST API in Splunk AI Toolkit
Published 2026-08-19 · Analyzed
4.3EPSS 0.002