Splunk issues critical advisories for Enterprise and AppDynamics
On 11 March 2026, Splunk published several security advisories covering critical vulnerabilities in Splunk Enterprise and Splunk AppDynamics components. The flaws mainly originate in third-party packages bundled with the products. The critical advisories include updates for Splunk Enterprise and multiple AppDynamics agents, among them the Database Agent, NodeJS Agent, Private Synthetic Agent and the On-Premises Enterprise Console. Splunk recommends upgrading to the latest available versions.
What this means for your business
For many organisations Splunk is the very tool used to monitor security, and the agents typically sit close to databases and applications. A vulnerable monitoring platform is an attractive target, because it has broad access and is rarely suspected. That the flaws come from bundled third-party libraries is also a reminder that your vendor's own supply chain is your risk.
Berigo recommends
- Map which Splunk and AppDynamics components you run, including agents installed on servers long ago.
- Apply the updates, prioritising components exposed across multiple environments.
- Ask the vendor for a software bill of materials so the next third-party flaw can be assessed faster.
- Restrict network access to management interfaces to a defined operations network.
Source
Security that is understood, governed and works.
Let us help you turn security into an advantage, not a cost. Get in touch for a no-obligation conversation about where your organisation stands and what to prioritise first.
Get in touch