ServiceNow AI Platform Vulnerability Exploited in the Wild

ServiceNow’s AI Platform has recently been targeted by threat actors exploiting a critical security vulnerability identified as CVE-2026-6875. This flaw, with a CVSS score of 9.5, allows unauthenticated users to execute arbitrary code by escaping the platform’s sandbox environment.

The vulnerability was initially reported to ServiceNow on April 1, 2026, by Searchlight Cyber. The company responded promptly by releasing patches throughout June for various versions, including Brazil EA and GA, Australia Patch 2, Zurich Patches 7b and 9, and Yokohama Patches 12 Hot Fix 1b and 13. These updates aimed to mitigate the risk by restricting the type of code permissible in sandbox contexts.

Despite these efforts, reports from Defused Cyber indicate that exploitation of this vulnerability began on July 17, 2026. Attackers are leveraging the pre-authentication endpoint “/assessment_thanks.do” through HTTP POST requests to achieve code execution, albeit via a different method than the one detailed in the initial proof-of-concept exploit.

ServiceNow’s AI Platform is integral to many organizations, facilitating the automation of digital workflows and IT service management. The exploitation of such a critical flaw underscores the importance of timely patch application. Organizations utilizing self-hosted versions of the platform are strongly advised to implement the provided fixes immediately to prevent potential breaches.

This incident highlights the persistent challenges in securing complex AI-driven platforms. As cyber threats evolve, it is imperative for organizations to maintain rigorous update protocols and stay informed about emerging vulnerabilities. The rapid exploitation of CVE-2026-6875 serves as a stark reminder of the necessity for proactive security measures in the face of sophisticated cyber adversaries.