The Hacker News
"Critical Splunk Enterprise flaw lets attackers run code without authorization." Views expressed in this cybersecurity, cyber crime update are those of the reporters and correspondents. Accessed on 14 June 2026, 1557 UTC. Content and Source: "The Hacker News." URL-- https://thehackernews.com/ Please check URL or scroll down to read your selections. Thanks for joining us today. Russ Roberts (https://www.hawaiicybersecurityjournal.net). Critical Splunk Enterprise Flaw Lets Attackers Run Code Without Authentication Jun 13, 2026 Vulnerability / Enterprise Software Splunk has released security updates to address a critical security flaw in Splunk Enterprise that could be exploited to conduct unauthenticated file operations and even remote code execution. The vulnerability, tracked as CVE-2026-20253 , is rated 9.8 on the CVSS scoring system. "In Splunk Enterprise versions below 10.2.4 and 10.0.7, an unauthenticated user could create or truncate arbitrary files t...