CVE Browser

More filters (active)

Page 1 (more results available)

Vendor: ServiceNow Remove filter Clear all
CVE-2026-86860 CRITICAL

Unauthenticated Sensitive Data Disclosure in ServiceNow AI Platform

CVSS 9.3 EPSS 0.30% Sep 24, 2026
CVE-2026-86859 HIGH

Unauthenticated Arbitrary Record Disclosure in ServiceNow AI Platform

CVSS 8.7 EPSS 0.29% Sep 24, 2026
CVE-2026-13016 CRITICAL

Unauthenticated SQL Injection in ServiceNow AI Platform

CVSS 9.3 EPSS 0.27% Sep 24, 2026
CVE-2026-86858 HIGH

Unauthenticated Privilege Escalation via GraphQL in ServiceNow AI Platform

CVSS 8.7 EPSS 0.27% Sep 24, 2026
CVE-2026-86857 HIGH

Authorization Bypass in ServiceNow AI Platform

CVSS 8.4 EPSS 0.24% Sep 24, 2026
CVE-2026-74820 CRITICAL

Unauthenticated SQL Injection via Dynamic Schema ORDER BY Clause

CVSS 10.0 EPSS 0.42% Aug 27, 2026
CVE-2026-18886 CRITICAL

Unauthenticated Privilege Escalation via System Configuration Image Upload Processor

CVSS 10.0 EPSS 5.04% Aug 27, 2026
CVE-2026-18885 CRITICAL

Unauthenticated Remote Code Execution in GraphQL Composite Data API

CVSS 10.0 EPSS 7.24% Aug 27, 2026
CVE-2026-6876 CRITICAL

Sandbox Escape in ServiceNow AI Platform

CVSS 10.0 EPSS 0.62% Aug 27, 2026
CVE-2026-6875 CRITICAL

Sandbox Escape in ServiceNow AI Platform

CVSS 9.5 EPSS 1.43% Jul 13, 2026
CVE-2026-0542 CRITICAL

Remote Code Execution in ServiceNow AI Platform

CVSS 9.2 EPSS 0.59% Feb 25, 2026
CVE-2025-12420 CRITICAL

Unauthenticated Privilege Escalation in ServiceNow AI Platform

CVSS 9.3 EPSS 53.19% Jan 12, 2026
CVE-2025-11449 MEDIUM

Reflected Cross Site Scripting in ServiceNow AI Platform

CVSS 5.3 EPSS 0.36% Oct 10, 2025
CVE-2025-11450 MEDIUM

Reflected Cross Site Scripting in ServiceNow AI Platform

CVSS 5.3 EPSS 0.36% Oct 10, 2025
CVE-2025-3089 MEDIUM

Broken Access Control in ServiceNow AI Platform

CVSS 5.3 EPSS 0.35% Aug 12, 2025
CVE-2025-3648 HIGH

Data Inference in Now Platform via Conditional ACLs

CVSS 8.2 EPSS 1.65% Jul 8, 2025
CVE-2025-0337 HIGH

Authorization bypass in Now Platform

CVSS 7.1 EPSS 0.39% Mar 6, 2025
CVE-2024-5890 MEDIUM

HTML Injection in the Assessment plugin

CVSS 5.1 EPSS 0.30% Dec 2, 2024
CVE-2024-8924 HIGH

Unauthenticated Blind SQL Injection in Core Platform

CVSS 8.7 EPSS 0.50% Oct 29, 2024
CVE-2024-8923 CRITICAL

Sandbox Escape in Now Platform

CVSS 9.3 EPSS 1.11% Oct 29, 2024
CVE-2024-5217 KEV CRITICAL

Incomplete Input Validation in GlideExpression Script

CVSS 9.2 EPSS 99.63% Jul 10, 2024
CVE-2024-5178 MEDIUM

Incomplete Input Validation in SecurelyAccess API

CVSS 6.9 EPSS 33.59% Jul 10, 2024
CVE-2024-4879 KEV CRITICAL

Jelly Template Injection Vulnerability in ServiceNow UI Macros

CVSS 9.3 EPSS 99.98% Jul 10, 2024
CVE-2023-3442 HIGH

Missing Authorization in Jenkins plug-in for ServiceNow DevOps

CVSS 7.7 EPSS 0.71% Jul 26, 2023
CVE-2023-3414 MEDIUM

Cross-Site Request Forgery (CSRF) in Jenkins Plug-in for ServiceNow DevOps

CVSS 6.5 EPSS 0.41% Jul 26, 2023

Showing 1 to 25 CVEs · page 1 (more available)