I reached out to Splunk Support regarding this issue and they mentioned that this is associated with a known issue(SPL-245333), this is not fixed yet but the expected version will be until 9.3. So, it is understandable why we would still see it in current versions. If they are so annoying in logs, you might blacklist those events. https://community.splunk.com/t5/Getting-Data-In/Filtering-events-using-NullQueue/m-p/66392
... View more