CVE-2026-6876
Last modified
CVE-2026-6876 is a critical-severity vulnerability rated 10/10 on the CVSS scale. ServiceNow has remediated a sandbox escape security issue that was identified in the ServiceNow AI Platform. This security issue could allow an unauthenticated user to execute arbitrary code within the ServiceNow AI Platform, potentially leading to more access to the ServiceNow AI Platform than intended. ServiceNow deployed a security update to hosted instances and ServiceNow provided the update to our partners and self-hosted customers. EPSS estimates a 0.36% chance of exploitation in the next 30 days.
Description
ServiceNow has remediated a sandbox escape security issue that was identified in the ServiceNow AI Platform. This security issue could allow an unauthenticated user to execute arbitrary code within the ServiceNow AI Platform, potentially leading to more access to the ServiceNow AI Platform than intended. ServiceNow deployed a security update to hosted instances and ServiceNow provided the update to our partners and self-hosted customers. We are not currently aware of malicious exploitation against ServiceNow instances. We recommend customers promptly apply appropriate updates or upgrade to a patched release if they have not already done so.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| ServiceNow | ServiceNow AI Platform | < Xanadu Patch 11 Hot Fix 7a; < Yokohama Patch 12 Hot Fix 3b; < Yokohama Patch 13 Hot Fix 4; < Zurich Patch 7b Hot Fix 3; < Zurich Patch 8 Hot Fix 5; < Zurich Patch 9 Hot Fix 6; < Zurich Patch 10 Hot Fix 2m (m-branch); < Zurich Patch 10 Hot Fix 3 (standard); < Zurich Patch 11; < Zurich Patch 12; < Australia Patch 2 Hot Fix 3; < Australia Patch 3 Hot Fix 2; < Australia Patch 3m; < Australia Patch 4; < Australia Patch 5 |
References
Timeline
- Published
- Last Modified
- Status
- Awaiting Analysis
Frequently Asked Questions
What is CVE-2026-6876?
How severe is CVE-2026-6876?
How do I fix CVE-2026-6876?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-68754A repository publisher without delete permission may modify …6.5
- CVE-2026-68755A bundle writer may create misleading release promotion info…4.3
- CVE-2026-68756A party with write access to stored session data may affect …6.6
- CVE-2026-68757A user with access to a valid SAML response may impersonate …7.5
- CVE-2026-68758A low-privileged authenticated user may access restricted su…6.5
- CVE-2026-68759A holder of a valid integration credential may impersonate o…7.2
- CVE-2026-68760An unauthenticated user may bypass authentication under spec…5.3
- CVE-2026-68762In JetBrains Ktor before 3.4.1 potential DoS attack via WebS…5.9
- CVE-2026-68763Uncontrolled Resource Consumption vulnerability in Apache To…7.5
- CVE-2026-68765hashcat master branch builds after v7.1.2 contain a heap buf…6.1
- CVE-2026-68766hashcat fails to restrict command-line options when parsing …7.8
- CVE-2026-68767hashcat's fgetl() function in src/filehandling.c writes a nu…6.1
Are you affected by CVE-2026-6876?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
