Critical Splunk Enterprise Flaw Lets Attackers Run Code Without Authentication

2026-06-14T19:24:08Z83b4408d104e0864877dc19f37a969e31fad731aa3921e30c8defb1deaf8e3d5
CISA-KEVactive-exploitationagent-exploitationai-securitybotnetcritical-vulnerabilityeBPF-rootkitinfostealerlaw-enforcement-takedownpackage-hijackpatchingremote-code-executionsupply-chainunauthenticated-exploitzero-day

What happened

This collection of The Hacker News stories reports multiple high‑risk, actively exploited vulnerabilities and large-scale supply‑chain and AI‑focused threats. Key items: a critical unauthenticated file‑operation/remote code execution flaw in Splunk Enterprise (CVE-2026-20253, CVSS 9.8); an exploited Oracle PeopleSoft zero‑day used by ShinyHunters (CVE-2026-35273); an actively exploited Langflow path‑traversal leading to unauthenticated RCE (CVE-2026-5027); Fortinet command‑injection fixes (CVE-2026-25089); and CISA additions to the KEV list including CVE-2026-20245. Other notable incidents: a

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
83b4408d104e0864877dc19f37a969e31fad731aa3921e30c8defb1deaf8e3d5
Enrichment time
2026-06-14T19:24:08Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Critical Splunk Enterprise Flaw Lets Attackers Run Code Without Authentication · Baitaphish