Home / Jul 22, 2026 / Story
0
#5 The Hacker News general July 21, 2026 at 06:29 UTC

Critical ServiceNow AI Platform Flaw Exploited for Unauthenticated Code Execution

By [email protected] (The Hacker News)

AI Summary

CVE-2026-6875 (CVSS 9.5), a sandbox escape vulnerability in the ServiceNow AI Platform allowing unauthenticated remote code execution, was observed being actively exploited in the wild just days after public disclosure, per Defused Cyber. ServiceNow's broad enterprise deployment as an IT service management platform makes this a high-priority patch for organizations running the AI Platform.

Relevance score: 87.0/100

# More from July 22