PT-2026-48499 · Splunk · Splunk Cloud Platform+1

Published

2026-06-10

·

Updated

2026-06-10

·

CVE-2026-20259

CVSS v3.1

5.5

Medium

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:L/A:N
In Splunk Enterprise versions below 10.2.4 and 10.0.7, and Splunk Cloud Platform versions below 10.4.2604.0, 10.3.2512.12, 10.2.2510.15, 10.1.2507.23, 10.0.2503.14, and 9.3.2411.131, a user who holds a Splunk role that contains the high-privilege capability edit saved search owner could reassign saved search ownership to users outside their authorized scope. The ownership reassignment endpoint lacks access control.

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2026-20259

Affected Products

Splunk Cloud Platform
Splunk Enterprise