Threat actors are actively exploiting a recently disclosed critical security vulnerability affecting the ServiceNow AI Platform, according to threat intelligence firm Defused Cyber. In a post shared on X, the company said it has observed in the wild exploitation of CVE 2026 6875, a sandbox escape vulnerability with a CVSS score of 9.5 that allows an unauthenticated attacker to execute arbitrary code. The flaw poses a significant risk to organizations using vulnerable ServiceNow deployments because successful exploitation can provide attackers with extensive control over affected systems. The activity has been detected shortly after ServiceNow released patches for the vulnerability across multiple supported platform versions.
The vulnerability was originally reported to ServiceNow by Searchlight Cyber on April 1, 2026. According to the researchers, the flaw could result in a complete compromise of a ServiceNow instance as well as any connected proxy servers, increasing its potential impact on enterprise environments. To address the issue, ServiceNow released security updates throughout June for Brazil EA and Brazil GA, Australia Patch 2, Zurich Patch 7b and Zurich Patch 9, along with Yokohama Patch 12 Hot Fix 1b and Yokohama Patch 13. Searchlight Cyber also disclosed additional technical details explaining the vulnerability and how it could be exploited. Security researcher Adam Kues noted that, besides issuing patches, ServiceNow is strengthening instance security by significantly restricting the types of code allowed to execute within sandbox environments, reducing the likelihood of similar sandbox escape attacks in the future.
According to Defused Cyber, attackers are targeting the same pre authentication endpoint, /assessment_thanks.do, by sending specially crafted HTTP POST requests. Although the exploitation path differs from the proof of concept previously documented by researchers, it ultimately achieves the same arbitrary code execution capability through a different sandbox escape technique. This demonstrates that threat actors have already adapted publicly available research to create practical attack methods capable of compromising exposed ServiceNow systems. The observed exploitation also highlights how quickly attackers can weaponize newly disclosed vulnerabilities once technical information becomes available, making timely patch management essential for organizations operating internet accessible enterprise platforms.
With active exploitation now confirmed, security experts recommend that organizations using self hosted ServiceNow deployments apply the available patches without delay. Installing the latest supported versions is considered the most effective way to mitigate the risk of unauthorized code execution and full system compromise. Organizations should also monitor their environments for suspicious HTTP POST requests targeting the affected endpoint, review logs for signs of unauthorized activity, and verify that all supported instances have received the latest security updates. Since the vulnerability can provide attackers with access to both ServiceNow environments and connected proxy servers, prompt remediation is critical to reducing exposure and protecting enterprise infrastructure from further compromise.
Follow the SPIN IDG WhatsApp Channel for updates across the Smart Pakistan Insights Network covering all of Pakistan’s technology ecosystem.