Stored Cross-Site Scripting (XSS) through Path Traversal in Splunk Enterprise
Published Mar 11, 2026
6.3
MEDIUMCVSS 3.1
EPSS 0.20%
Description
In Splunk Enterprise versions below 10.2.0, 10.0.3, 9.4.9, and 9.3.9, and Splunk Cloud Platform versions below 10.2.2510.4, 10.1.2507.15, 10.0.2503.11, and 9.3.2411.123, a low-privileged user who does not hold the "admin" or "power" Splunk roles could craft a malicious payload when creating a View (Settings - User Interface - Views) at the `/manager/launcher/data/ui/views/_new` endpoint leading to a Stored Cross-Site Scripting (XSS) through a path traversal vulnerability. This could result in execution of unauthorized JavaScript code in the browser of a user.
The vulnerability requires the attacker to phish the victim by tricking them into initiating a request within their browser. The authenticated user should not be able to exploit the vulnerability at will.
Affected products
-
- Version 10.0.2503StatusaffectedConstraints<10.0.2503.11
- Version 10.1.2507StatusaffectedConstraints<10.1.2507.15
- Version 10.2.2510StatusaffectedConstraints<10.2.2510.4
- Version 9.3.2411StatusaffectedConstraints<9.3.2411.123
- Version
-
- Version 10.0StatusaffectedConstraints<10.0.3
- Version 9.3StatusaffectedConstraints<9.3.9
- Version 9.4StatusaffectedConstraints<9.4.9
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Splunk | Splunk Cloud Platform | n/a |
| |||||||||||||||
| Splunk | Splunk Enterprise | n/a |
|
Configuration 1
Configuration 2
- ≥ 9.3.2411 · < 9.3.2411.123
- ≥ 10.0.2503 · < 10.0.2503.11
- ≥ 10.1.2507 · < 10.1.2507.15
- ≥ 10.2.2510 · < 10.2.2510.4
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (2)
- https://advisory.splunk.com/advisories/SVD-2026-0301 Vendor Advisory
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-11226 Advisory
| Link | Providers | Tags |
|---|---|---|
| https://advisory.splunk.com/advisories/SVD-2026-0301 | Vendor Advisory | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-11226 | Advisory |
Change history (0)
No recorded changes yet.