ServiceNow AI Platform: Critical Vulnerability Now Being Exploited

Colleagues, I’d like to draw your attention to a cybersecurity development: a critical vulnerability, CVE-2026-6875, in the ServiceNow AI Platform is already being actively exploited.
According to Defused Cyber, the flaw enables unauthenticated remote code execution via a sandbox escape.
ServiceNow released patches in June, and researchers also noted that the issue could lead to full compromise of the instance and associated proxy servers.
If you are using a self-hosted version, I would strongly recommend checking for updates and applying the fix without delay.
Why it matters: active exploitation significantly reduces the time available to respond.
Have you already checked your instances?
#cybersecurity #ServiceNow #Vulnerability #AppSec


Latest comments
No comments yet.