Sensitive Information Exposure in AWS IAM App for Splunk SOAR
CVE-2026-76376
4.3MEDIUM
What is CVE-2026-76376?
The AWS IAM app for Splunk SOAR versions prior to 2.1.9 has a flaw that allows users with appropriate permissions to inadvertently expose sensitive AWS credentials through a cleartext credentials parameter. This is because the relevant action parameter is not designated as a password within the user interface, leading to potential data leaks during action executions. Properly marking such parameters is crucial to prevent unauthorized disclosure of sensitive information.
Affected Version(s)
AWS IAM app for Splunk SOAR 2.1 < 2.1.9