Vulnerability CVE-2022-26889


Published: 2022-05-06

Description:
The lack of sanitization in a relative url path in a search parameter allows for arbitrary injection of external content in Splunk Enterprise versions before 8.1.2.

 References:
https://www.splunk.com/en_us/product-security/announcements/svd-2022-0506.html
https://research.splunk.com/application/path_traversal_spl_injection/

Copyright 2026, cxsecurity.com

 

Back to Top