ServiceNow AI Platform RCE flaw CVE-2026-6875 is actively exploited
Source headline: Critical ServiceNow code execution flaw now exploited in attacks
Intelligence Summary
Defused reports that attackers are exploiting a critical remote code execution vulnerability in the ServiceNow AI Platform. The issue is tracked as CVE-2026-6875 and allows threat actors to run code via the affected ServiceNow components. Exploitation in the wild increases the urgency for organizations that use ServiceNow AI features. Successful attacks may lead to account compromise, data access, or further intrusions. Admins should verify exposure and apply any available fixes or mitigations immediately.
Recommended Action
Prioritize immediate review, validate exposure, and patch or mitigate affected systems.