CVE-2026-6875
Last modified
CVE-2026-6875 is a critical-severity vulnerability rated 9.5/10 on the CVSS scale. ServiceNow has addressed a remote code execution vulnerability that was identified in the ServiceNow AI platform. This vulnerability could enable an unauthenticated user, in certain circumstances, to execute code within the ServiceNow platform. ServiceNow addressed this vulnerability by deploying a security update to hosted instances.
Description
ServiceNow has addressed a remote code execution vulnerability that was identified in the ServiceNow AI platform. This vulnerability could enable an unauthenticated user, in certain circumstances, to execute code within the ServiceNow platform. ServiceNow addressed this vulnerability by deploying a security update to hosted instances. Relevant security updates have also been provided to ServiceNow self-hosted customers and partners. Further, the vulnerability is addressed in the listed patches and family releases, which have been made available to hosted and self-hosted customers, as well as partners. We are not currently aware of exploitation against ServiceNow instances. We recommend customers promptly apply appropriate updates or upgrade to a patched release if they have not already done so.
Metrics
CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| ServiceNow | ServiceNow AI Platform | < Australia Patch 2; < Yokohama Patch 12 Hot Fix 1b; < Yokohama Patch 13; < Zurich Patch 7b; < Zurich Patch 9; < Brazil EA; < Brazil GA |
References
Timeline
- Published
- Last Modified
- Status
- Awaiting Analysis
Frequently Asked Questions
What is CVE-2026-6875?
How severe is CVE-2026-6875?
How do I fix CVE-2026-6875?
Related CVEs from 2026
- CVE-2026-6869WebSocket protocol dissector crash in Wireshark 4.6.0 to 4.6…5.5
- CVE-2026-6870GSM RP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 …5.5
- CVE-2026-6871Improper Neutralization of Input During Web Page Generation …6.1
- CVE-2026-6872Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMB…
- CVE-2026-6873An issue was discovered in Django 6.0 before 6.0.6 and 5.2 b…4.3
- CVE-2026-6874A vulnerability was determined in ericc-ch copilot-api up to…4.3
- CVE-2026-6878A vulnerability was identified in ByteDance verl up to 0.7.0…5.6
- CVE-2026-6883GitLab has remediated an issue in GitLab EE affecting all ve…4.3
- CVE-2026-6885Borg SPM 2007 (Sales Ended in 2008) developed by BorG Techno…9.8
- CVE-2026-6886Borg SPM 2007 (Sales Ended in 2008) developed by BorG Techno…9.8
- CVE-2026-6887Borg SPM 2007 (Sales Ended in 2008) developed by BorG Techno…9.8
- CVE-2026-6888Successful exploitation of the SQL injection vulnerability c…7.2
Are you affected by CVE-2026-6875?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
