CVE-2025-20226 | Splunk Enterprise/Cloud Platform Saved Search /services/streams/search q information disclosure (SVD-2025-0305 / Nessus ID 233368)
A vulnerability classified as problematic has been found in Splunk Enterprise and Cloud Platform. Affected is an unknown function of the file /services/streams/search of the component Saved Search Handler. The manipulation of the argument q leads to information disclosure.
This vulnerability is traded as CVE-2025-20226. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.