2 Sources
[1]
Critical ServiceNow code execution flaw now exploited in attacks
Attackers have begun exploiting a critical vulnerability (CVE-2026-6875) in the ServiceNow AI Platform, according to threat intelligence company Defused. Formerly known as the Now Platform, ServiceNow AI Platform is an enterprise-grade Platform-as-a-Service (PaaS) that helps businesses integrate AI into core enterprise workflows. Cybersecurity company Searchlight Cyber, which found this critical vulnerability and reported it on April 1st, says that it allows unauthenticated threat actors to escape the sandbox and execute code remotely within the ServiceNow platform in high-complexity attacks. ServiceNow addressed the flaw across hosted instances and released CVE-2026-6875 security updates for self-hosted instances one week ago, on July 13th. Over the weekend, Defused security researchers confirmed that attackers have begun exploiting the vulnerability in the wild, with the first attempts being observed on Friday, days after ServiceNow issued patches. "We are observing in-the-wild exploitation of the ServiceNow pre-auth sandbox-escape RCE (CVE-2026-6875)," Defused warned in a Saturday tweet. "The payloads hit the same pre-auth sink @SLCyberSec documented (/assessment_thanks.do), but the sandbox-escape gadget reaches the same code-execution primitive by a different route than their published PoC." ServiceNow has yet to flag this security as actively abused and, in the official advisory, still states that it is "not currently aware of exploitation against ServiceNow instances." However, the company advises all customers who have not already done so to secure their systems against attacks by upgrading to a patched release as soon as possible. A ServiceNow spokesperson was not immediately available for comment when BleepingComputer reached out to confirm Defused's report that CVE-2026-6875 is now actively exploited. Last month, ServiceNow also privately disclosed a security incident in which attackers queried data from customer instances by exploiting an unauthenticated access flaw via a vulnerable API endpoint. In a subsequent advisory, it tied the incident to security researchers or customer-led research linked to bug bounty submissions rather than to malicious threat actors. ServiceNow says that its AI Platform runs more than 100 billion workflows each year and powers over 100,000 enterprise AI apps at 85% of all Fortune 500 companies.
[2]
Critical ServiceNow AI Platform Flaw Exploited for Unauthenticated Code Execution
Threat actors are now exploiting a recently disclosed critical security flaw impacting ServiceNow AI Platform, according to Defused Cyber. In a post shared on X, the threat intelligence firm said it's observing in-the-wild exploitation of CVE-2026-6875 (CVSS score: 9.5), a sandbox escape vulnerability that could allow an unauthenticated user to run arbitrary code. Patches for the flaw were released by ServiceNow throughout June in the following versions - * Brazil EA and Brazil GA * Australia Patch 2 * Zurich Patch 7b and Zurich Patch 9 * Yokohama Patch 12 Hot Fix 1b and Yokohama Patch 13 Searchlight Cyber, which disclosed additional technical specifics, said it reported the issue on April 1, 2026, adding it allows a complete compromise of the ServiceNow instance as well as all connected proxy servers. Besides rolling out a fix, ServiceNow is "enhancing instance security by severely restricting the type of code that can run in sandbox contexts," security researcher Adam Kues noted. According to Defused, the exploitation efforts target the same pre-authentication endpoint ("/assessment_thanks.do") using HTTP POST requests, although the sandbox-escape gadget leads to the same code execution primitive by a different route documented in the proof-of-concept (PoC) exploit. In light of active exploitation, customers of self-hosted versions are advised to apply the fixes, if not already, to counter the threat.
Share
Copy Link
Attackers are exploiting CVE-2026-6875, a critical ServiceNow AI Platform flaw that enables unauthenticated remote code execution. Discovered by Searchlight Cyber and reported in April, the sandbox escape vulnerability affects enterprise workflows at 85% of Fortune 500 companies. Defused security researchers detected exploitation attempts just days after patches were released on July 13th.
A critical ServiceNow code execution flaw is now actively exploited by attackers, threatening enterprise systems worldwide. CVE-2026-6875, rated with a CVSS score of 9.5, represents a severe sandbox escape vulnerability affecting the ServiceNow AI Platform—an enterprise-grade Platform-as-a-Service that helps businesses integrate AI into core enterprise workflows
1
2
. The flaw allows unauthenticated threat actors to escape the sandbox and execute code remotely within the ServiceNow platform in high-complexity attacks1
.
Source: Hacker News
Searchlight Cyber discovered and reported the ServiceNow AI Platform flaw on April 1st, warning that it allows complete compromise of ServiceNow instances as well as all connected proxy servers
2
. ServiceNow addressed the vulnerability across hosted instances and released security patches for self-hosted versions on July 13th across multiple platform versions including Brazil EA and GA, Australia Patch 2, Zurich Patch 7b and 9, and Yokohama Patch 12 Hot Fix 1b and Patch 132
. However, Defused security researchers confirmed exploitation attempts began on Friday, just days after patches became available1
.The exploitation efforts target the same pre-authentication endpoint at /assessment_thanks.do using HTTP POST requests, according to Defused
2
. While attackers hit the same pre-auth sink documented by Searchlight Cyber, the sandbox-escape gadget reaches the same code execution primitive by a different route than the published proof-of-concept exploit. This variation suggests threat actors have developed alternative exploitation methods, potentially making detection more challenging for security teams.Related Stories
ServiceNow has yet to officially flag this security vulnerability as actively abused and still states in its advisory that it is "not currently aware of exploitation against ServiceNow instances"
1
. Despite this, the company advises all customers who have not already done so to secure their systems by upgrading to patched releases immediately. Beyond deploying fixes, ServiceNow is enhancing instance security by severely restricting the type of code that can run in sandbox contexts, according to security researcher Adam Kues2
. Given that the AI Platform runs more than 100 billion workflows annually and powers over 100,000 enterprise AI apps at 85% of Fortune 500 companies, the potential impact of successful exploitation is substantial1
.
Source: BleepingComputer
Summarized by
Navi
[1]
07 Apr 2026•Technology

30 Jun 2026•Technology

10 Jun 2026•Technology

1
Technology

2
Policy and Regulation

3
Science and Research
