Sceawere

Vulnerability Detail

CVE-2026-76391UPDATED Verified Sceawere Triage Sources: NVD / CISA KEV

Splunk AI Toolkit Privilege Escalation

Vulnerability Metadata

Severity
High
Score / CVSS
8.3
Creation Date
17h ago
Vendor
Splunk
Product
Splunk AI Toolkit
Attack Type
The software performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check. This allows attackers to bypass intended access restrictions.
Vector String
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L
Attack Complexity
LOW

Narrative and Response

Description

In Splunk AI Toolkit versions below 6.0.0, a user who does not hold the "admin" or "power" Splunk roles could run searches with system-level privileges, access all relevant data, affect system integrity, and read or delete search jobs belonging to other users through Agent Run History. The improper privilege management is possible because the Agent Run History handler replaces the calling user session key with a system authentication token before it performs search operations. For more information see AI Toolkit Agent Launchpad (https://help.splunk.com/en/splunk-enterprise/apply-machine-learning/use-ai-toolkit/6.0.0/ai-toolkit-connections-containers-and-agents/ai-toolkit-agent-launchpad) in the Splunk documentation.

Executive Summary

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.

Executive Summary Locked

Sign up to unlock professional threat analysis, mitigations, and indicator signatures.

Technical Details

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.

Detailed Technical Analysis Locked

Sign up to unlock professional threat analysis, mitigations, and indicator signatures.

Mitigations

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.

Remediation & Mitigations Locked

Sign up to unlock professional threat analysis, mitigations, and indicator signatures.

References

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.

Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur. Excepteur sint occaecat cupidatat non proident, sunt in culpa qui officia deserunt mollit anim id est laborum.

Intelligence References Locked

Sign up to unlock professional threat analysis, mitigations, and indicator signatures.

Additional Metadata

{
  "score": "8.3",
  "pubDate": "2026-08-19T22:17:25.487Z",
  "pubdate": "2026-08-19T22:17:25.487Z",
  "executiveSummary": "An improper privilege management vulnerability exists in the Splunk AI Toolkit in versions below 6.0.0. The vulnerability allows unprivileged users who lack the \"admin\" or \"power\" Splunk roles to execute searches with system-level privileges through the Agent Run History component. The impact of this security flaw includes unauthorized access to sensitive data, the ability to affect system integrity, and the capability to read or delete search jobs belonging to other users. Attackers require access to the application interface but bypass standard role-based access control mechanisms due to improper session token handling. The risk implication is significant as low-privileged users can inherit elevated system permissions. Remediation requires upgrading the Splunk AI Toolkit to version 6.0.0 or higher.",
  "technicalDetails": "The vulnerability stems from improper privilege management within the Agent Run History handler of the Splunk AI Toolkit for versions below 6.0.0. The root cause of the flaw is that the application replaces the calling user session key with an internal system authentication token prior to executing search operations. Consequently, authentication and authorization boundaries enforced by Splunk's role-based access control are bypassed.\nDuring a typical attack flow, a low-privileged user without the \"admin\" or \"power\" Splunk roles interacts with the Agent Run History feature. When a request is processed by the vulnerable component, the backend logic substitutes the authenticated user's session context with elevated system-level credentials. This substitution allows the executing process to inherit unrestricted privileges.\nWith system-level privileges, the attacker can execute arbitrary searches, access all relevant data indexed within the environment, and compromise system integrity. Furthermore, the elevated context grants the user unauthorized capabilities to read or delete active or historical search jobs belonging to other users on the platform. The vulnerability requires local access to the application interface but eliminates the need for prior administrative or power user privileges to achieve privilege escalation."
}
CVE-2026-76391: Splunk AI Toolkit Privilege Escalation (HIGH Severity, CVSS: 8.3) - Sceawere