Critical ServiceNow AI Platform Flaw Exploited for Unauthenticated Code Execution
08:29 · July 21, 2026 · Hacker News AI Section

Threat actors are now exploiting a recently disclosed critical security flaw impacting ServiceNow AI Platform, according to Defused Cyber. In a post shared on X, the threat intelligence firm said it's observing in-the-wild exploitation of CVE-2026-6875 (CVSS score: 9.5), a sandbox escape vulnerability that could allow an unauthenticated user to run arbitrary code. Patches for the flaw were
Summary
Threat actors are actively exploiting CVE-2026-6875, a sandbox escape vulnerability rated 9.5 on the CVSS scale, in the ServiceNow AI Platform. The flaw permits unauthenticated attackers to execute arbitrary code by targeting the pre-authentication endpoint "/assessment_thanks.do" with crafted HTTP POST requests. Successful exploitation can lead to full compromise of the ServiceNow instance and any connected proxy servers.
Searchlight Cyber, which reported the issue on 1 April 2026, documented how the escape from the restricted execution environment grants broad access. ServiceNow responded by shipping patches throughout June and by tightening the types of code permitted to run inside sandbox contexts. Defused Cyber observed live exploitation attempts whose payloads align with the public proof-of-concept, although ServiceNow’s own investigation found no evidence of compromise on instances it hosts.
Self-hosted customers are advised to apply the updates without delay. The discrepancy between observed external activity and ServiceNow’s telemetry highlights the importance of monitoring both vendor-hosted and on-premises deployments when a high-severity pre-authentication flaw is involved.
Why it matters
This article is highly relevant for security professionals in the Netherlands as it details an actively exploited, critical vulnerability in a widely used enterprise AI platform. Immediate action is required to patch self-hosted instances to prevent unauthorized code execution and potential data breaches.







