PT-2026-78823 · Splunk · Splunk Ai Toolkit

CVE-2026-76396

·

Published

2026-08-19

·

Updated

2026-08-21

CVSS v3.1

7.5

High

VectorAV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Splunk AI Toolkit versions prior to 6.0.0
Description Improper access control allows a user with the schedule search capability to cause a scheduled search to load and deserialize a model file. This occurs because the apply search command is not marked as risky, enabling the unauthorized deserialization of model files.
Recommendations Update Splunk AI Toolkit to version 6.0.0 or later.

Fix

Improper Privilege Management

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-76396

Affected Products

Splunk Ai Toolkit