Security
CVE Feed
Latest vulnerabilities from the National Vulnerability Database.
44895
Total
3603
Critical
13333
High
13202
Medium
| CVE ID | Severity | Score | Description | Published |
|---|---|---|---|---|
| CVE-2026-76386 | MEDIUM | 4.3 | In versions below 3.2.2 of the Zoom app for Splunk SOAR, a user who holds a role with permission to run actions could expose meeting … | Aug 19, 2026 |
| CVE-2026-76385 | MEDIUM | 4.3 | In versions below 2.1.4 of the Venafi app for Splunk SOAR, a user who holds a role with permission to run actions could expose keystore … | Aug 19, 2026 |
| CVE-2026-76384 | MEDIUM | 4.3 | In versions below 2.2.1 of the Splunk Attack Analyzer Connector for Splunk SOAR, a user who holds a role with permission to run actions could … | Aug 19, 2026 |
| CVE-2026-76383 | MEDIUM | 4.3 | In versions below 1.0.5 of the RSA SecurID Authentication Manager app for Splunk SOAR, a user who holds a role with permission to run actions … | Aug 19, 2026 |
| CVE-2026-76382 | MEDIUM | 4.3 | In versions below 3.8.5 of the Phantom app for Splunk SOAR, a user who holds a role with permission to run actions could expose a … | Aug 19, 2026 |
| CVE-2026-76381 | MEDIUM | 4.3 | In versions below 1.5.2 of the MS Graph for Active Directory app for Splunk SOAR, a user who holds a role with permission to run … | Aug 19, 2026 |
| CVE-2026-76380 | MEDIUM | 4.3 | In versions below 5.1.3 of the CrowdStrike OAuth API app for Splunk SOAR, a user who holds a role with permission to run actions could … | Aug 19, 2026 |
| CVE-2026-76379 | MEDIUM | 4.3 | In versions below 2.2.1 of the Cisco Webex app for Splunk SOAR, a user who holds a role with permission to run actions could expose … | Aug 19, 2026 |
| CVE-2026-76378 | MEDIUM | 4.3 | In versions below 2.4.5 of the Cisco Secure Malware Analytics app for Splunk SOAR, a user who holds a role with permission to run actions … | Aug 19, 2026 |
| CVE-2026-76377 | MEDIUM | 4.3 | In versions below 2.5.3 of the Azure AD Graph app for Splunk SOAR, a user who holds a role with permission to run actions could … | Aug 19, 2026 |
| CVE-2026-76376 | MEDIUM | 4.3 | In versions below 2.1.9 of the AWS IAM app for Splunk SOAR, a user who holds a role with permission to run actions could expose … | Aug 19, 2026 |
| CVE-2026-76375 | MEDIUM | 5.0 | In versions below 2.3.8 of the AD LDAP app for Splunk SOAR, a user who holds a role with permission to run actions could expose … | Aug 19, 2026 |
| CVE-2026-76374 | MEDIUM | 4.3 | In versions below 2.3.8 of the AD LDAP app for Splunk SOAR, a user who holds a role with permission to run actions could cause … | Aug 19, 2026 |
| CVE-2026-76373 | MEDIUM | 5.4 | In versions below 2.3.8 of the AD LDAP app for Splunk SOAR, a user who holds a role with permission to run actions could inject … | Aug 19, 2026 |
| CVE-2026-76372 | MEDIUM | 6.6 | In Nmap Scanner versions below 3.0.15, a user who holds a role that can edit, create, or run playbooks in Splunk SOAR could run the … | Aug 19, 2026 |
| CVE-2026-76371 | LOW | 2.7 | In FireAMP versions below 2.1.15, a user who holds a role that can edit, create, or run playbooks in Splunk SOAR could run the add … | Aug 19, 2026 |
| CVE-2026-76370 | MEDIUM | 4.3 | In Splunk SOAR versions below 8.6.0, an authenticated user with restricted tenant access could use the Representational State Transfer (REST) API to view the names … | Aug 19, 2026 |
| CVE-2026-76369 | LOW | 2.7 | In Splunk SOAR versions below 8.6.0, a user who holds the OnPrem Broker role could write files outside the intended Automation Broker log directory. The … | Aug 19, 2026 |
| CVE-2026-76368 | LOW | 2.7 | In Splunk SOAR versions below 8.6.0, a user who holds a role that contains the playbooks:view permission could view metadata about a playbook repository that … | Aug 19, 2026 |
| CVE-2026-76367 | MEDIUM | 4.0 | In Splunk SOAR versions below 8.6.0, a user who holds the "Incident Commander" Splunk SOAR role could store JavaScript in a note and run it … | Aug 19, 2026 |
| CVE-2026-76366 | MEDIUM | 6.5 | In Splunk SOAR versions below 8.6.0, a user with a valid Splunk SOAR account could use Representational State Transfer (REST) API filtering on playbook runs … | Aug 19, 2026 |
| CVE-2026-76365 | MEDIUM | 6.5 | In Splunk SOAR versions below 8.6.0, a user who holds the "Automation Engineer" Splunk SOAR role could run arbitrary Structured Query Language (SQL) statements against … | Aug 19, 2026 |
| CVE-2026-76364 | MEDIUM | 6.5 | In Splunk SOAR versions below 8.6.0, a user who holds the "Automation Engineer" Splunk SOAR role could run arbitrary Structured Query Language (SQL) statements against … | Aug 19, 2026 |
| CVE-2026-76363 | MEDIUM | 6.5 | In Splunk SOAR versions below 8.6.0, a user who holds the "Automation Engineer" role could run arbitrary Structured Query Language (SQL) statements against the Splunk … | Aug 19, 2026 |
| CVE-2026-76362 | HIGH | 7.4 | In Splunk SOAR versions below 8.6.0, an unauthenticated user who can observe or alter network traffic between Splunk SOAR and a configured CyberArk Representational State … | Aug 19, 2026 |