CVE-2026-76391: In Splunk AI Toolkit versions below 6.0.0, a user who does not hold the "admin" or "power" Splunk roles could run search
Summary
In Splunk AI Toolkit versions before 6.0.0, there is a privilege escalation vulnerability (a security flaw where a user gains higher access levels than they should have) in the Agent Run History feature. Users without admin or power roles could run searches with system-level privileges, access other users' data, and delete search jobs by exploiting how the system replaces user credentials with a system authentication token.
Vulnerability Details
8.3(high)
EPSS: 0.0%
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L
network
low
low
none
August 19, 2026
Classification
Affected Vendors
Related Issues
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-76391
First tracked: August 19, 2026 at 08:09 PM
Classified by LLM (prompt v3) · confidence: 85%