ZoomEye Adds WebMCP Support, Discovers Critical Splunk RCE Vulnerability Affecting 1.5M Instances

cyb3rops · x · 2026-08-21

Cybersecurity platform ZoomEye announced the expansion of its AI ecosystem with WebMCP support, enabling compatible AI agents to discover and invoke tools directly. Simultaneously, the team disclosed a critical deserialization vulnerability (CVE-2026-76404) in the Splunk MCP Server app that leads to Remote Code Execution (RCE). ZoomEye scans have identified approximately 1.5 million exposed Splunk instances globally vulnerable to this flaw.

Original post →

More from coding & agent

coding & agent channel →