CVE-2026-6875
High PUBLISHEDSandbox Escape in ServiceNow AI Platform
Not yet in CISA KEV
Recommended Action
Prioritize remediation. Validate affected assets and apply vendor fixes on an accelerated timeline.
At a Glance
ServiceNow has addressed a remote code execution vulnerability that was identified in the ServiceNow AI platform. This vulnerability could enable an unauthenticated user, in certain circumstances, to execute code within the ServiceNow platform. ServiceNow addressed this vulnerability by deploying a security update to hosted instances. Relevant security updates have also been provided to ServiceNow self-hosted customers and partners. Further, the vulnerability is addressed in the listed patches and family releases, which have been made available to hosted and self-hosted customers, as well as partners. We are not currently aware of exploitation against ServiceNow instances. We recommend customers promptly apply appropriate updates or upgrade to a patched release if they have not already done so.
- CVE Published
- Jul 13, 2026
- Exploitation Reported
- Jul 18, 2026
- CVSS
- 9.5 Critical
- EPSS
- 0.5%
Affected Versions
| Vendor | Product | Version | Status |
|---|---|---|---|
| ServiceNow |
ServiceNow AI Platform
|
0 to < Australia Patch 2 |
Affected |
| ServiceNow |
ServiceNow AI Platform
|
0 to < Yokohama Patch 12 Hot Fix 1b |
Affected |
| ServiceNow |
ServiceNow AI Platform
|
0 to < Yokohama Patch 13 |
Affected |
| ServiceNow |
ServiceNow AI Platform
|
0 to < Zurich Patch 7b |
Affected |
| ServiceNow |
ServiceNow AI Platform
|
0 to < Zurich Patch 9 |
Affected |
| ServiceNow |
ServiceNow AI Platform
|
0 to < Brazil EA |
Affected |
| ServiceNow |
ServiceNow AI Platform
|
0 to < Brazil GA |
Affected |
CVE References
- support.servicenow.com/kb support.servicenow.com · CVE Record https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=...
Recommended Actions
- Prioritize remediation. Validate affected assets and apply vendor fixes on an accelerated timeline.
- Use the Pro API to automate enrichment, telemetry, and workflow delivery for VM, SOC, and CTI pipelines.
Known Exploited Vulnerability Sources
Catalogues that list this CVE as a known exploited vulnerability.
Per-source evidence links for KEV attestations are available through the KEVIntel Pro API.
Learn about Pro API access| Source | Added |
|---|---|
| Defused Cyber First | 2026-07-18 10:55 UTC |
| Daily CyberSecurity | 2026-07-18 11:02 UTC |
| BleepingComputer | 2026-07-20 09:29 UTC |
| TheHackerNews | 2026-07-21 06:29 UTC |
No detection artifacts or sensor request patterns are available for this CVE yet.
Check back as sensor telemetry and scanner integrations are updated.
Virtual Patch
Compensating WAF rules to help reduce exposure to this CVE. Rule content and deployable vendor exports are available with KEVIntel Enterprise.
KEVIntel does not currently have a virtual patch for this CVE. When available, KEVIntel virtual patches ship as deployable ModSecurity, Cloudflare, and AWS WAF rules.
Enterprise feature. Virtual patch rule content and deployable vendor exports (ModSecurity, Cloudflare, AWS WAF) are available to KEVIntel Enterprise users.
CVSS Scores
CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H
Exploitation Status
Exploited in the wild
Recorded 2026-07-18 10:55:00 UTC · Defused Cyber
Weaknesses (CWE)
-
Improper Control of Generation of Code ('Code Injection')
Recent Mentions
TheHackerNews · Jul 21, 2026
Threat actors are now exploiting a recently disclosed critical security flaw impacting ServiceNow AI Platform, according to Defused Cyber. In a post shared on X, the threat intelligence firm said it's observing in-the-wild exploitation of CVE-2026-6875 (CVSS score: 9.5), a sandbox escape vulnerability that could allow an unauthenticated user to run arbitrary code. Patches for the flaw were
BleepingComputer · Jul 20, 2026
Attackers have begun exploiting a critical vulnerability (CVE-2026-6875) in the ServiceNow AI Platform, according to threat intelligence company Defused. [...]
Daily CyberSecurity · Jul 18, 2026
TL;DR A critical flaw in the ServiceNow AI platform allows unauthenticated users to run arbitrary commands. DefusedCyber flagged The post Active Exploitation and Public PoC Disclosed for CVE-2026-6875 ServiceNow Sandbox Escape Remote Code Execution appeared first on Daily CyberSecurity.
Timeline
Key exploitation, disclosure, scanner coverage, and KEV attestation events for this CVE.
-
06:29 UTC about 3 hours ago06:29 UTC · about 3 hours ago
KEV confirmed by TheHackerNews
Exploitation attested by an external source
-
09:29 UTC about 24 hours ago09:29 UTC · about 24 hours ago
KEV confirmed by BleepingComputer
Exploitation attested by an external source
-
11:02 UTC 3 days ago11:02 UTC · 3 days ago
KEV confirmed by Daily CyberSecurity
Exploitation attested by an external source
-
10:55 UTC 3 days ago10:55 UTC · 3 days ago
Added to KEVIntel KEV Feed
High-confidence, third-party attested exploitation
-
18:17 UTC 8 days ago18:17 UTC · 8 days ago
CVE published
Vulnerability disclosed publicly
-
18:21 UTC 3 months ago18:21 UTC · 3 months ago
CVE ID reserved
Identifier reserved by the CNA
Automate This Intelligence with the Pro API
Confidence scoring, exploit status, sensor telemetry, PoCs, scanner integrations, mentions, and tags are available programmatically for VM, SOC, and CTI workflows.
Pro API Example
GET /api/v2/pro/kevs/CVE-2026-6875
{
"cve_id": "CVE-2026-6875",
"title": "Sandbox Escape in ServiceNow AI Platform",
"affected_vendor": "ServiceNow",
"affected_product": "ServiceNow AI Platform",
"affected_versions": [
{ "vendor": "...", "product": "...", "status": "affected", "display_label": "..." }
],
"confidence": "High",
"cvss_score": 9.5,
"epss_score": 0.00509,
"exploit_status": {
"exploited_in_the_wild": true,
"active_exploitation_observed": false
},
"sensor_telemetry": { "...": "Pro API fields" },
"proof_of_concepts": [ "..." ],
"scanner_integrations": [ "..." ]
}