Executive brief
Splunk AI Toolkit is a data analytics platform used to analyze machine learning models and search data. A privilege escalation vulnerability allows users with the "power" role to modify scheduled searches and execute arbitrary queries with the permissions of the search owner, potentially exposing all related data and compromising system integrity.
Technical details
The vulnerability stems from incorrect permission assignment (CWE-732) in Splunk AI Toolkit's scheduled search functionality. Users holding the "power" Splunk role are granted permission to modify app-provided scheduled searches that execute using the permissions of the search owner, rather than the modifier's permissions. An authenticated attacker with the power role can craft malicious Search Processing Language (SPL) commands and inject them into scheduled searches, leading to arbitrary code execution with elevated privileges. The attack requires network access and valid user credentials with the power role; no special user interaction is needed. The vulnerability affects versions below 6.0.1 for the 6.0 branch and below 6.0.0 for the 5.7 branch; patches are available in versions 6.0.1 and 6.0.0 respectively.
Affected products
- Splunk AI Toolkit below 6.0.1
Timeline
- 2026-08-19: disclosed