Active exploitation of CVE-2026-6875 targets unpatched self-hosted ServiceNow instances. The pre-auth RCE vulnerability uses two gadget chains for sandbox escape. https:// deafnews.it/en/article/cve-2

Active exploitation of CVE-2026-6875 targets unpatched self-hosted ServiceNow instances. The pre-auth RCE vulnerability uses two gadget chains for sandbox escape. https:// deafnews.it/en/article/cve-202 6-6875-active-attacks-on-self-hosted-servicenow-cloud-protected-since-april

1 reportother

Claim audit

No BS check run yet — press ⚖ to extract this story's claims and verify them against independent sources.

All coverage

Active exploitation of CVE-2026-6875 targets unpatched self-hosted ServiceNow instances. The pre-auth RCE vulnerability uses two gadget chains for sandbox escape. https:// deafnews.it/en/article/cve-2

mastodon:infosec-exchangeother67d ago kagi ↗

Active exploitation of CVE-2026-6875 targets unpatched self-hosted ServiceNow instances. The pre-auth RCE vulnerability uses two gadget chains for sandbox escape. https:// deafnews.it/en/article/cve-202 6-6875-active-attacks-on-self-hosted-servicenow-cloud-protected-since-april