Splunk · Splunk Enterprise · CVE-2022-26070
**Name of the Vulnerable Software and Affected Versions**
Splunk Enterprise versions prior to 8.1.0
**Description**
The application leaks the internal error message in the response when handling a mismatched pre-authentication cookie, which contains the Splunk Enterprise local system path.
**Recommendations**
For versions prior to 8.1.0, update to version 8.1.0 or later to resolve the issue.