Description
In Splunk MCP Server app versions below 1.2.1, a user who holds the "admin" Splunk role could execute arbitrary commands on the underlying operating system. The vulnerability is possible because of missing input validation in the app's credential management component, which deserializes stored data without checking whether the content is of the expected type.
Published: 2026-08-19
Score: 9.1 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

In Splunk MCP Server app versions earlier than 1.2.1, the credential management component deserializes stored data without validating the data type. An adversary with a Splunk admin role can provide crafted input that triggers this deserialization, enabling them to execute arbitrary commands on the underlying operating system. This flaw is an unsafe deserialization weakness classified as CWE-502.

Affected Systems

The Splunk MCP Server app is affected. All releases below version 1.2.1 are considered vulnerable. No further sub‑version details are provided, so every build prior to 1.2.1 must be addressed.

Risk and Exploitability

The vulnerability carries a CVSS score of 9.1, indicating critical severity. EPSS score is not available, but the lack of public exploitation does not diminish the risk; an attacker who authenticates as a Splunk admin can trigger the flaw. The issue is not listed in the CISA KEV catalog. Compromise requires an authenticated admin session, and the attacker can run any OS command once the deserialization is triggered.

Generated by OpenCVE AI on August 20, 2026 at 10:53 UTC.

Remediation

Vendor Solution

Upgrade each affected Splunk app or add-on to the applicable fixed version listed in Product Status.


Vendor Workaround

Turn off or remove the Splunk MCP Server app. For more information see [Manage app and add-on objects](https://help.splunk.com/en/splunk-enterprise/administer/admin-manual/10.2/meet-splunk-apps/manage-app-and-add-on-objects) in the Splunk documentation.


OpenCVE Recommended Actions

  • Update the Splunk MCP Server app to version 1.2.1 or newer.
  • If an update is not feasible, disable or remove the Splunk MCP Server app from the environment.
  • Limit the use of the Splunk admin role and monitor for anomalous credential activity.

Generated by OpenCVE AI on August 20, 2026 at 10:53 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 24 Aug 2026 18:45:00 +0000

Type Values Removed Values Added
First Time appeared Splunk model Context Protocol Server
CPEs cpe:2.3:a:splunk:model_context_protocol_server:*:*:*:*:*:*:*:*
Vendors & Products Splunk model Context Protocol Server

Fri, 21 Aug 2026 16:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 20 Aug 2026 09:30:00 +0000

Type Values Removed Values Added
First Time appeared Splunk
Splunk splunk Mcp Server App
Vendors & Products Splunk
Splunk splunk Mcp Server App

Wed, 19 Aug 2026 21:45:00 +0000

Type Values Removed Values Added
Description In Splunk MCP Server app versions below 1.2.1, a user who holds the "admin" Splunk role could execute arbitrary commands on the underlying operating system. The vulnerability is possible because of missing input validation in the app's credential management component, which deserializes stored data without checking whether the content is of the expected type.
Title Remote Code Execution (RCE) through Deserialization of Untrusted Data in Splunk MCP Server app
Weaknesses CWE-502
References
Metrics cvssV3_1

{'score': 9.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H'}


Subscriptions

Splunk Model Context Protocol Server Splunk Mcp Server App
cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published:

Updated: 2026-08-20T15:26:31.137Z

Reserved: 2026-08-19T12:02:03.632Z

Link: CVE-2026-76404

cve-icon Vulnrichment

Updated: 2026-08-20T15:23:55.839Z

cve-icon NVD

Status : Analyzed

Published: 2026-08-19T22:17:27.170

Modified: 2026-08-24T18:37:33.990

Link: CVE-2026-76404

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-20T11:00:04Z

Weaknesses
  • CWE-502

    Deserialization of Untrusted Data