CVE-2026-20253
- CVSS
- —
- EPSS
- 0.969 (99.9th percentile)
- CISA KEV
- Added 2026-06-18, due 2026-06-21
- Exploitation
- No report
- Public exploits
- 7 repositories
- State
- Unknown
Coverage

Actively exploitedCritical 85watchTowr Labs
Why Use App-Level Auth When Every Database Has Auth? (Splunk Enterprise CVE-2026-20253 Pre-Auth RCE)
Three posts? In three days? Are we insane? We're home alone, there's no one to stop us, and we're up past bedtime. So, we need to talk about Splunk. On June 10th, Splunk published this CVE-2026-20253 advisory: It has everything that we
What we observed
- poc publishedpoc-in-github
- poc publishedpoc-in-github
- poc publishedpoc-in-github
- kev addedcisa-kev