Description
In Splunk AI Toolkit versions below 6.0.0, a low-privileged user who does not hold the "admin" or "power" Splunk roles could start, stop, and configure containers, and read or modify connection and configuration data through the Representational State Transfer (REST) API. The missing authorization is possible because multiple REST API handlers in Splunk AI Toolkit do not enforce authorization checks. For more information see Troubleshoot the Splunk Machine Learning Toolkit (https://help.splunk.com/en/splunk-cloud-platform/apply-machine-learning/machine-learning-toolkit-user-guide/5.5.0/troubleshooting-mltk/troubleshoot-the-splunk-machine-learning-toolkit) in the Splunk documentation.
Published: 2026-08-19
Score: 8.3 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

In Splunk AI Toolkit versions prior to 6.0.0, several REST API handlers failed to perform proper authorization checks. A low‑privileged user who is not a member of the "admin" or "power" roles can therefore start, stop, and configure containers, as well as read and modify connection and configuration data. This allows the attacker to change the execution environment of the toolkit, potentially leading to denial of service or the execution of arbitrary code within the containers. The flaw reflects an inadequate authorization mechanism, as identified by CWE‑862.

Affected Systems

The vulnerability affects the Splunk AI Toolkit app/add‑on for all installations where the version is below 6.0.0. The recommended fix is to upgrade each affected Splunk app or add‑on to the applicable fixed version listed in Product Status, which includes any release 6.0.0 or later of the AI Toolkit.

Risk and Exploitability

The CVSS score of 8.3 indicates a high severity vulnerability, and although no EPSS value is available, the lack of authorization checks suggests a moderate exploitation likelihood for authenticated users. The vulnerability is not listed in the CISA KEV catalog, but its impact on container orchestration and configuration data can be substantial if an attacker gains control. The likely attack vector is through the REST API; an attacker must be authenticated with any non‑admin role, then issue API requests that target the affected endpoints. Given the high severity and the permissive access for low‑privileged users, the risk to affected environments is considered high.

Generated by OpenCVE AI on August 20, 2026 at 09:48 UTC.

Remediation

Vendor Solution

Upgrade each affected Splunk app or add-on to the applicable fixed version listed in Product Status.


Vendor Workaround

Turn off or remove the Splunk AI Toolkit app. For more information see [Manage app and add-on objects](https://help.splunk.com/en/splunk-enterprise/administer/admin-manual/10.2/meet-splunk-apps/manage-app-and-add-on-objects) in the Splunk documentation. Note: turning off Splunk AI Toolkit turns off AI Toolkit Search Processing Language (SPL) commands and model operations. Splunk App for Data Science and Deep Learning and custom search commands that depend on AI Toolkit models or APIs might stop functioning. Unrelated Splunk custom search commands are not affected. For more information see [Troubleshoot the Splunk Machine Learning Toolkit](https://help.splunk.com/en/splunk-cloud-platform/apply-machine-learning/use-ai-toolkit/5.5.0/troubleshooting-mltk/troubleshoot-the-splunk-machine-learning-toolkit) and [DSDL install/version dependencies](https://help.splunk.com/en/splunk-enterprise/apply-machine-learning/splunk-app-for-data-science-and-deep-learning/5.1/install-and-configure-the-splunk-app-for-data-science-and-deep-learning/install-or-upgrade-the-splunk-app-for-data-science-and-deep-learning) in the Splunk documentation.


OpenCVE Recommended Actions

  • Upgrade Splunk AI Toolkit to version 6.0.0 or later to remove the missing authorization checks.
  • If an upgrade cannot be performed immediately, disable or remove the Splunk AI Toolkit app to prevent unauthorized container management and reduce the attack surface.
  • After disabling the app, verify that any dependent AI Toolkit search processing language commands and associated addons are either restored or reconfigured so that critical analytics workflows remain operational.
  • Monitor Splunk logs for unexpected REST API activity to detect attempts to use disabled endpoints or identify any new anomalies.

Generated by OpenCVE AI on August 20, 2026 at 09:48 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 26 Aug 2026 21:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 21 Aug 2026 19:00:00 +0000

Type Values Removed Values Added
First Time appeared Splunk ai Toolkit
CPEs cpe:2.3:a:splunk:ai_toolkit:*:*:*:*:*:*:*:*
Vendors & Products Splunk ai Toolkit

Wed, 19 Aug 2026 23:45:00 +0000

Type Values Removed Values Added
First Time appeared Splunk
Splunk splunk Ai Toolkit
Vendors & Products Splunk
Splunk splunk Ai Toolkit

Wed, 19 Aug 2026 21:45:00 +0000

Type Values Removed Values Added
Description In Splunk AI Toolkit versions below 6.0.0, a low-privileged user who does not hold the "admin" or "power" Splunk roles could start, stop, and configure containers, and read or modify connection and configuration data through the Representational State Transfer (REST) API. The missing authorization is possible because multiple REST API handlers in Splunk AI Toolkit do not enforce authorization checks. For more information see Troubleshoot the Splunk Machine Learning Toolkit (https://help.splunk.com/en/splunk-cloud-platform/apply-machine-learning/machine-learning-toolkit-user-guide/5.5.0/troubleshooting-mltk/troubleshoot-the-splunk-machine-learning-toolkit) in the Splunk documentation.
Title Missing Authorization in Container and Connection Management through the REST API in Splunk AI Toolkit
Weaknesses CWE-862
References
Metrics cvssV3_1

{'score': 8.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H'}


Subscriptions

Splunk Ai Toolkit Splunk Ai Toolkit
cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published:

Updated: 2026-08-26T19:37:27.919Z

Reserved: 2026-08-19T12:02:03.631Z

Link: CVE-2026-76394

cve-icon Vulnrichment

Updated: 2026-08-26T19:37:24.974Z

cve-icon NVD

Status : Analyzed

Published: 2026-08-19T22:17:25.870

Modified: 2026-08-26T20:18:01.067

Link: CVE-2026-76394

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-20T10:00:07Z

Weaknesses