The Platform Underneath: How a ServiceNow Sandbox Escape Turned Enterprise AI Infrastructure Into an Attack Surface
CVE-2026-6875 is a pre-authentication remote code execution vulnerability in the ServiceNow AI Platform, carrying a CVSS v4.0 score of 9.5. The vulnerability allows unauthenticated actors to execute arbitrary code without user interaction. The mechanism resides in the GlideRecord query engine, which supports a javascript: filter operator intended to evaluate user-supplied input. The endpoint /assessment_thanks.do facilitates…