{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-08-01T09:12:03.154","vulnerabilities":[{"cve":{"id":"CVE-2026-20139","sourceIdentifier":"psirt@cisco.com","published":"2026-02-18T18:24:26.497","lastModified":"2026-06-17T10:17:11.707","vulnStatus":"Analyzed","cveTags":[],"descriptions":[{"lang":"en","value":"In Splunk Enterprise versions below 10.2.0, 10.0.2, 9.4.8, 9.3.9, and 9.2.12, and Splunk Cloud Platform versions below 10.2.2510.3, 10.1.2507.8, 10.0.2503.9, and 9.3.2411.121, a low-privileged user that does not hold the \"admin\" or \"power\" Splunk roles could craft a malicious payload into the `realname`, `tz`, or `email` parameters of the `/splunkd/__raw/services/authentication/users/username` REST API endpoint when they change a password. This could potentially lead to a client‑side denial‑of‑service (DoS). The malicious payload might significantly slow page load times or render Splunk Web temporarily unresponsive."},{"lang":"es","value":"En las versiones de Splunk Enterprise anteriores a 10.2.0, 10.0.2, 9.4.8, 9.3.9 y 9.2.12, y en las versiones de Splunk Cloud Platform anteriores a 10.2.2510.3, 10.1.2507.8, 10.0.2503.9 y 9.3.2411.121, un usuario con pocos privilegios que no posea los roles de Splunk 'admin' o 'power' podría crear una carga útil maliciosa en los parámetros `realname`, `tz` o `email` del endpoint de la API REST `/splunkd/__raw/services/authentication/users/username` cuando cambian una contraseña. Esto podría, potencialmente, provocar una denegación de servicio (DoS) del lado del cliente. La carga útil maliciosa podría ralentizar significativamente los tiempos de carga de la página o hacer que Splunk Web no responda temporalmente."}],"affected":[{"source":"psirt@cisco.com","affectedData":[{"vendor":"Splunk","product":"Splunk Enterprise","versions":[{"version":"10.0","lessThan":"10.0.2","versionType":"custom","status":"affected"},{"version":"9.4","lessThan":"9.4.8","versionType":"custom","status":"affected"},{"version":"9.3","lessThan":"9.3.9","versionType":"custom","status":"affected"},{"version":"9.2","lessThan":"9.2.12","versionType":"custom","status":"affected"}]},{"vendor":"Splunk","product":"Splunk Cloud Platform","versions":[{"version":"10.2.2510","lessThan":"10.2.2510.3","versionType":"custom","status":"affected"},{"version":"10.1.2507","lessThan":"10.1.2507.8","versionType":"custom","status":"affected"},{"version":"10.0.2503","lessThan":"10.0.2503.9","versionType":"custom","status":"affected"},{"version":"9.3.2411","lessThan":"9.3.2411.121","versionType":"custom","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"psirt@cisco.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L","baseScore":4.3,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"LOW"},"exploitabilityScore":2.8,"impactScore":1.4}],"ssvcV203":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","ssvcData":{"timestamp":"2026-02-19T19:10:51.635917Z","id":"CVE-2026-20139","options":[{"exploitation":"none"},{"automatable":"no"},{"technicalImpact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}]},"weaknesses":[{"source":"psirt@cisco.com","type":"Secondary","description":[{"lang":"en","value":"CWE-400"}]},{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","type":"Secondary","description":[{"lang":"en","value":"CWE-400"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*","versionStartIncluding":"9.2.0","versionEndExcluding":"9.2.12","matchCriteriaId":"6A753402-54BC-4809-800C-A1B1CC1BF176"},{"vulnerable":true,"criteria":"cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*","versionStartIncluding":"9.3.0","versionEndExcluding":"9.3.9","matchCriteriaId":"0D9ACC64-CE37-4DBF-9315-E2DA76A3EAD2"},{"vulnerable":true,"criteria":"cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*","versionStartIncluding":"9.4.0","versionEndExcluding":"9.4.8","matchCriteriaId":"657A9AFC-2335-4C32-8B81-901D1C742592"},{"vulnerable":true,"criteria":"cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*","versionStartIncluding":"10.0.0","versionEndExcluding":"10.0.2","matchCriteriaId":"4413D4BE-F225-4C28-B401-EB46D8F34160"},{"vulnerable":true,"criteria":"cpe:2.3:a:splunk:splunk_cloud_platform:*:*:*:*:*:*:*:*","versionStartIncluding":"9.3.2411","versionEndExcluding":"9.3.2411.121","matchCriteriaId":"B3D8C2DB-F956-49E2-8140-8D8962071007"},{"vulnerable":true,"criteria":"cpe:2.3:a:splunk:splunk_cloud_platform:*:*:*:*:*:*:*:*","versionStartIncluding":"10.0.2503","versionEndExcluding":"10.0.2503.9","matchCriteriaId":"62714243-8A5F-4908-BD39-7B1026B8E7D7"},{"vulnerable":true,"criteria":"cpe:2.3:a:splunk:splunk_cloud_platform:*:*:*:*:*:*:*:*","versionStartIncluding":"10.1.2507","versionEndExcluding":"10.1.2507.8","matchCriteriaId":"43C712E7-B77B-49CC-8143-C5594F0089DD"},{"vulnerable":true,"criteria":"cpe:2.3:a:splunk:splunk_cloud_platform:*:*:*:*:*:*:*:*","versionStartIncluding":"10.2.2510","versionEndExcluding":"10.2.2510.3","matchCriteriaId":"AFACEF04-1811-4345-A640-EF3FC84E490B"}]}]}],"references":[{"url":"https://advisory.splunk.com/advisories/SVD-2026-0204","source":"psirt@cisco.com","tags":["Vendor Advisory"]}]}}]}