logo

ServiceNow Flaw Exploited to Gain Unauthorized Access to Customer Instances

ID: 2bb4aef6-1f2d-5682-9da0-70d62ba5e910

STIX ID: report--2bb4aef6-1f2d-5682-9da0-70d62ba5e910

Feed Name: The Hacker News

Threat Score
75/100

Date Published: 2026-06-10

Date Updated: 2026-06-10

Author: [email protected] (The Hacker News)

...
...

ServiceNow disclosed a security issue that could permit unauthenticated users, depending on platform release or instance configuration, to obtain greater-than-intended access to instances; the company applied a fix on June 5, 2026, observed anomalous activity and successful table queries against a subset of customers, and has notified impacted customers while the issue (no CVE assigned) was first discussed publicly on Reddit.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.