ShellCodeX
Tools • Events • News • Insights
ShellCodeX Intelligence Brief
CRITICAL Vulnerabilities

CVE-2026-6875 ServiceNow AI Platform bug enables unauthenticated code execution

Source headline: Critical ServiceNow AI Platform Flaw Exploited for Unauthenticated Code Execution

Threat level Critical
Signal strength 95/100
Source confidence 1 source
Published 6 hours ago

Intelligence Summary

Defused Cyber says threat actors are actively exploiting a critical ServiceNow AI Platform vulnerability. The issue is tracked as CVE-2026-6875 and has a CVSS score of 9.5. It is described as a sandbox escape flaw that can allow an unauthenticated attacker to execute arbitrary code. Organizations using the affected ServiceNow AI Platform should treat this as an active exploitation risk. Verify patch status, restrict access where possible, and review for signs of anomalous AI platform activity.

Recommended Action

Prioritize immediate review, validate exposure, and patch or mitigate affected systems.

Topics

#unauthenticated #active-exploitation #ai-platform #sandbox-escape #servicenow #cve-2026-6875
Original reporting The Hacker News Critical ServiceNow AI Platform Flaw Exploited for Unauthenticated Code Execution
Open original source