Splunk Cisco Talos Intelligence For Enterprise Security Cloud vulnerabilities
2 known vulnerabilities affecting splunk/cisco_talos_intelligence_for_enterprise_security_cloud.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2026-76389P2HIGHCVSS 8.8≥ 1.0, < 1.0.32026-08-19
CVE-2026-76389 [HIGH] CWE-918 CVE-2026-76389: In Cisco Talos Intelligence for Enterprise Security Cloud versions below 1.0.3, a user that holds a
In Cisco Talos Intelligence for Enterprise Security Cloud versions below 1.0.3, a user that holds a role with the get_talos_enrichment capability could send a crafted request to the Talos intelligence enrichment Representational State Transfer (REST) API endpoint and cause the instance to make an outbound request to an attacker-controlled server. The r
nvd
CVE-2026-76390P4MEDIUMCVSS 5.3≥ 1.0, < 1.0.32026-08-19
CVE-2026-76390 [MEDIUM] CWE-200 CVE-2026-76390: In Cisco Talos Intelligence for Enterprise Security Cloud versions below 1.0.3, an unauthenticated u
In Cisco Talos Intelligence for Enterprise Security Cloud versions below 1.0.3, an unauthenticated user could access the add-on OpenAPI specification through Splunk Web static file paths. The exposed specification could allow for reconnaissance of the add-on Representational State Transfer (REST) API endpoints and authentication model. The vulnerabi
nvd