CVE-2022-43570: Splunk
Medium severity, CVSS 6.5. EPSS: 0.7% chance of exploitation in the next 30 days.
In Splunk Enterprise versions below 8.1.12, 8.2.9, and 9.0.2, an authenticated user can perform an extensible markup language (XML) external entity (XXE) injection via a custom View. The XXE injection causes Splunk Web to embed incorrect documents into an error.
Affected products
- Splunk Splunk: from 8.1.0, before 8.1.12 (fixed in 8.1.12); from 8.2.0, before 8.2.9 (fixed in 8.2.9); from 9.0.0, before 9.0.2 (fixed in 9.0.2)
- Splunk Splunk Cloud Platform: before 9.0.2209 (fixed in 9.0.2209)
Published 2022-11-04. Last modified 2026-06-17.