CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-40087

unknowncovered by 1 sourcefirst seen 2026-08-20
Multiple vulnerabilities have been discovered in Splunk products. Some of them allow an attacker to cause arbitrary code execution remotely, privilege escalation and breach of data confidentiality.

CSIRTS triage

What
Multiple vulnerabilities in Splunk products allow remote code execution, privilege escalation, and data confidentiality breach.
Who is affected
Organizations using various Splunk products across the portfolio.
Urgency
High priority; RCE and privilege escalation represent critical security risks with no indication of exploitation difficulty.
Action
Identify affected Splunk products and apply vendor patches for the eight CVEs listed.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch CVE-2026-40087

Get an email if CVE-2026-40087 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (1)

External references

NVD record for CVE-2026-40087

CVE.org record

Embed the live status

CVE-2026-40087 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-40087 status](https://www.csirts.com/badge/CVE-2026-40087)](https://www.csirts.com/cve/CVE-2026-40087)