CVE Tools

Splunk Secure Gateway

15 CVEs tracked. None of them is in CISA KEV.

This hub aggregates every CVE we track for Splunk Secure Gateway, a product in the security products space. Use it to gauge the current risk picture and drill into individual advisories.

Splunk Secure Gateway CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Splunk Secure Gateway CVEs per month
MonthCVEs
2024-101
2024-110
2024-122
2025-010
2025-020
2025-032
2025-040
2025-050
2025-060
2025-070
2025-080
2025-090
2025-100
2025-110
2025-122
2026-010
2026-020
2026-030
2026-040
2026-050
2026-061
2026-070
2026-087
2026-090

Severity

How the 15 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • High427%
  • Medium1173%

Latest CVEs

The 15 most recently published vulnerabilities affecting Splunk Secure Gateway.

  1. CVE-2026-76351Server-Side Request Forgery (SSRF) through the Report Notification REST API in Splunk Secure Gateway8.8
  2. CVE-2026-76347Server-Side Request Forgery (SSRF) through the Report Notifications REST API in Splunk Secure Gateway5.4
  3. CVE-2026-76327SPL Injection through Splunk Web in Splunk Secure Gateway6.4
  4. CVE-2026-76261Insecure Default Access Control List through the REST API in Splunk Secure Gateway5.3
  5. CVE-2026-76258Use of Hard-coded Cryptographic Key through Companion App Registration in Splunk Secure Gateway6.5
  6. CVE-2026-76257Missing Authorization through REST API Endpoints in Splunk Secure Gateway6.5
  7. CVE-2026-76256Information Exposure through REST API Endpoints in Splunk Secure Gateway4.3
  8. CVE-2026-20251Remote Code Execution through Deserialization of Untrusted Data in Splunk Secure Gateway8.8
  9. CVE-2025-20389Improper Input Validation in "label" column field in Splunk Secure Gateway App4.3
  10. CVE-2025-20383Improper access control through push notifications for reports and alerts in Splunk Secure Gateway app4.3
  11. CVE-2025-20230Missing Access Control and Incorrect Ownership of Data in App Key Value Store (KVStore) collections in the Splunk Secure Gateway App4.3
  12. CVE-2025-20231Sensitive Information Disclosure in Splunk Secure Gateway App7.1
  13. CVE-2024-53243Information Disclosure in Mobile Alert Responses in Splunk Secure Gateway4.3
  14. CVE-2024-53247Remote Code Execution through Deserialization of Untrusted Data in Splunk Secure Gateway app8.8
  15. CVE-2024-45735Improper Access Control for low-privileged user in Splunk Secure Gateway App4.3

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store