ServiceNow Flaw Exploited to Gain Unauthorized Access to Customer Instances
ID: 2bb4aef6-1f2d-5682-9da0-70d62ba5e910
STIX ID: report--2bb4aef6-1f2d-5682-9da0-70d62ba5e910
Feed Name: The Hacker News
Threat Score
ServiceNow disclosed a security issue that could permit unauthenticated users, depending on platform release or instance configuration, to obtain greater-than-intended access to instances; the company applied a fix on June 5, 2026, observed anomalous activity and successful table queries against a subset of customers, and has notified impacted customers while the issue (no CVE assigned) was first discussed publicly on Reddit.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
