Critical ServiceNow AI Flaws Expose Enterprise Data and Code Execution Paths
ServiceNow has patched three critical AI-platform vulnerabilities and a high-severity Now Platform sandbox escape. Self-hosted customers should urgently verify fixed releases and investigate signs of unauthorized code execution...
Unauthenticated Attackers Are Actively Exploiting a ServiceNow Sandbox-Escape Flaw
A critical ServiceNow vulnerability that lets unauthenticated attackers break out of the platform's scripting sandbox is now being exploited in the wild. ServiceNow has shipped patches, but self-hosted...
ServiceNow Confirms Unauthorized Access Vulnerability Exposing Enterprise Customer Data
ServiceNow has confirmed a security vulnerability allowing unauthorized actors to query customer instance tables without proper authentication, potentially exposing sensitive enterprise data. The platform, used by thousands of...
ServiceNow instances expose sensitive corporate data
A recent study by AppOmni has uncovered a critical vulnerability in over 1,000 enterprise ServiceNow instances, resulting in the exposure of sensitive corporate data. Organizations relying on ServiceNow...