SPLUNK has addressed 17 vulnerabilities across its apps and add-ons, with the most severe being CVE-2026-76404, a critical remote code execution flaw in the MCP Server app, scoring 9.1 on the CVSS scale. None of the vulnerabilities have been confirmed to be exploited in the wild. Affected versions of the MCP Server and AI Toolkit require immediate updates to secure environments. The vulnerabilities stem from issues like unsafe deserialization that could allow attackers to execute commands on hosts. Users are advised to upgrade affected applications or disable them temporarily to mitigate risks.
Splunk patches critical RCE flaw in MCP Server app, urges updates
CyberSIXT Evidence Panel
Article by CyberSIXT