CVE-2019-5729: Splunk Software Development Kit

High severity, CVSS 8.1. EPSS: 0.7% chance of exploitation in the next 30 days.

Splunk-SDK-Python before 1.6.6 does not properly verify untrusted TLS server certificates, which could result in man-in-the-middle attacks.

Affected products

  • Splunk Software Development Kit: before 1.6.6 (fixed in 1.6.6)

Published 2019-03-21. Last modified 2026-06-17.