Dossier
CVE-2026-6875
Coverage of CVE-2026-6875 in the Nexus archive.
- Critical ServiceNow AI Platform Flaw Exploited for Unauthenticated Code Execution
Threat actors are exploiting a critical sandbox escape vulnerability (CVE-2026-6875) in ServiceNow AI Platform, allowing unauthenticated users to execute arbitrary code. Defused Cyber reported active exploitation of the flaw, which carries a CVSS score of 9.5. Patches for the vulnerability have been released.
- Critical ServiceNow code execution flaw now exploited in attacks
Attackers are exploiting a critical vulnerability (CVE-2026-6875) in the ServiceNow AI Platform, according to threat intelligence company Defused. The flaw allows code execution and is currently being used in attacks.