CVE-2023-22943EPSS p23.0%
CVE-2023-22943CVE-2023-22943
splunk / add-on_builder
Description
In Splunk Add-on Builder (AoB) versions below 4.1.2 and the Splunk CloudConnect SDK versions below 3.1.3, requests to third-party APIs through the REST API Modular Input incorrectly revert to using HTTP to connect after a failure to connect over HTTPS occurs.
Scoring
| CVSS | 4.8 () |
| Vector | CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N |
| EPSS | 0.32% probability of exploitation · percentile 23.0% · 2026-06-19T12:03:05Z |
| Last modified | 2026-06-17 |