Splunk · Splunk Ai Toolkit · CVE-2026-76393
**Name of the Vulnerable Software and Affected Versions**
Splunk AI Toolkit versions prior to 6.0.0
**Description**
A race condition exists when users upload models. An attacker with upload permissions can overwrite a model being uploaded by another user by sending a concurrent upload request using the same model name. This occurs because the system fails to verify that the uploaded content corresponds to the specific request that creates the model lookup entry, potentially leading to the lookup entry referencing attacker-controlled content.
**Recommendations**
Update to version 6.0.0 or later.