Executive brief
Splunk AI Toolkit is a machine learning platform integrated with Splunk data analytics. A low-privileged user without admin or power roles could start, stop, and configure containers, and read or modify connection configuration data through unauthorized REST API access. An attacker with basic user credentials could manipulate critical ML infrastructure and access sensitive data, potentially compromising model integrity and operational security.
Technical details
This is a missing authorization vulnerability (CWE-862) in Splunk AI Toolkit versions below 6.0.0. Multiple REST API handlers for container and connection management fail to enforce proper authorization checks, allowing low-privileged users to perform privileged operations. The attack vector is network-based and requires only standard user credentials (no admin/power role); no user interaction or additional authentication is needed beyond basic Splunk login. An attacker can start/stop containers, modify configuration data, and access connection credentials. The vulnerability was fixed in version 6.0.0 (for 5.7 branch) and 6.0.1 (for 6.0 branch).
Affected products
- Splunk AI Toolkit below 6.0.0 (5.7 branch); below 6.0.1 (6.0 branch)
Timeline
- 2026-08-19: disclosed
- 2026-08-19: patched: Fixed in version 6.0.0 (5.7 branch) and 6.0.1 (6.0 branch)