CVE-2026-6875 lets attackers bypass the ServiceNow script sandbox through a JavaScript override technique, with exploitation already in the wild.
Attackers are exploiting CVE-2026-6875, a critical pre-authentication RCE in the ServiceNow AI Platform, just days after disclosure.
ServiceNow disclosed that threat actors exploited an unpatched configuration flaw to query a subset of customer instances before a security…
Sign in to your account
Remember me