CVE-2023-32713: Splunk App For Stream
Critical severity, CVSS 9.9. EPSS: 0.3% chance of exploitation in the next 30 days.
In Splunk App for Stream versions below 8.1.1, a low-privileged user could use a vulnerability in the streamfwd process within the Splunk App for Stream to escalate their privileges on the machine that runs the Splunk Enterprise instance, up to and including the root user.
Affected products
- Splunk Splunk App For Stream: before 8.1.1 (fixed in 8.1.1)
Published 2023-06-01. Last modified 2026-06-17.