Splunk incident
Lookups failing for KVService | CINC - 62975 | Major Outage
Splunk experienced a major incident on October 24, 2025 affecting Search and Index, lasting 15h 18m. The incident has been resolved; the full update timeline is below.
Affected components
Update timeline
- investigating Oct 24, 2025, 03:42 PM UTC
We are investigating a potential issue with KVService, that may impact several Splunk cloud platform customers in eu-central-1. As a result of this issue, customers are experiencing lookups failing to complete. We will provide an update within the next 30 minutes.
- investigating Oct 24, 2025, 04:08 PM UTC
We are continuing to investigate this issue.
- investigating Oct 24, 2025, 04:40 PM UTC
We continue to investigate the issue with KVService, that may impact several Splunk cloud platform customers in eu-central-1. As a result of this issue, customers are experiencing lookups failing to complete as well as errors within Splunk applications that depend heavily on KVService.
- investigating Oct 24, 2025, 05:30 PM UTC
We are continuing to investigate this issue.
- identified Oct 24, 2025, 06:01 PM UTC
The issue has been identified and a temporary fix is implemented.
- monitoring Oct 24, 2025, 06:42 PM UTC
A fix has been implemented and we are monitoring the results.
- resolved Oct 25, 2025, 07:00 AM UTC
This incident has been resolved after applying the fix.