PT-2026-78788 · Splunk · Splunk Soar

CVE-2026-76361

·

Published

2026-08-19

·

Updated

2026-08-21

CVSS v3.1

2.7

Low

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Splunk SOAR versions prior to 8.6.0
Description A user with the Administrator role can perform Server-Side Request Forgery (SSRF)—a technique where an attacker forces a server to make requests to an unintended location—via the '/rest/support/connectivity/.../check connectivity' endpoint. This occurs because the connectivity check REST API does not sufficiently validate the destination before initiating outbound network connections, allowing the user to determine if internal hosts and ports are reachable.
Recommendations Update to version 8.6.0 or later.

Fix

SSRF

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-76361

Affected Products

Splunk Soar