securityonline.info 8/20/2026, 6:27:19 AM · external

Splunk patches critical RCE flaw in MCP Server app, urges updates

Splunk patches critical RCE flaw in MCP Server app, urges updates
CyberSIXT Evidence Panel
Primary Source advisory.splunk.com
CISA KEV Not in KEV
Patch Patch Status Unknown

SPLUNK has addressed 17 vulnerabilities across its apps and add-ons, with the most severe being CVE-2026-76404, a critical remote code execution flaw in the MCP Server app, scoring 9.1 on the CVSS scale. None of the vulnerabilities have been confirmed to be exploited in the wild. Affected versions of the MCP Server and AI Toolkit require immediate updates to secure environments. The vulnerabilities stem from issues like unsafe deserialization that could allow attackers to execute commands on hosts. Users are advised to upgrade affected applications or disable them temporarily to mitigate risks.

View Primary Source Via securityonline.info

Article by CyberSIXT