Loading HuntDB...

GHSA-rg8w-4hqw-2p27

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

In versions 1.0.67 and lower of the Splunk App for SOAR, the Splunk documentation for that app recommended adding the `admin_all_objects` capability to the `splunk_app_soar` role. This addition could lead to improper access control for a low-privileged user that does not hold the “admin“ Splunk roles.

Related CVEs

Key Information

GHSA ID
GHSA-rg8w-4hqw-2p27
Published
January 7, 2025 6:30 PM
Last Modified
January 15, 2025 6:30 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 11, 2025 6:35 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.