<?xml version='1.0' encoding='utf-8'?>
<rss version="2.0"><channel><title>Cybersecurity Tracker: ServiceNow Watch</title><link>https://cybersecuritytracker.ai/?stack=1</link><description>Stories and vulnerabilities involving ServiceNow.</description><lastBuildDate>Sun, 26 Jul 2026 22:32:52 GMT</lastBuildDate><item><title>Week in review: ServiceNow pre-auth RCE exploited in the wild, Hugging Face breached</title><link>https://helpnetsecurity.com/2026/07/26/week-in-review-servicenow-pre-auth-rce-exploited-in-the-wild-hugging-face-breached</link><guid isPermaLink="false">cst-3226</guid><description>A weekly news roundup covered multiple security topics, including active exploitation of a ServiceNow pre-authentication remote code execution vulnerability and a breach of Hugging Face. The piece also discussed how organizations increasingly run multiple AI platforms simultaneously across different vendors and departments.</description><pubDate>Sun, 26 Jul 2026 08:00:34 GMT</pubDate></item><item><title>Snowpick: Open-source ServiceNow exposure scanner</title><link>https://helpnetsecurity.com/2026/07/22/servicenow-data-exposure-snowpick-open-source-scanner</link><guid isPermaLink="false">cst-2980</guid><description>Bishop Fox developed Snowpick, an open-source Go tool that scans ServiceNow instances for exposure to unauthenticated access. During authorized penetration testing across 166 ServiceNow instances, the scanner found 31% were vulnerable and returned records or confirmations to unauthenticated requests. The firm published both the tool and its findings to help organizations identify and remediate this configuration weakness.</description><pubDate>Wed, 22 Jul 2026 05:30:05 GMT</pubDate></item><item><title>Exploitation of ServiceNow Vulnerability Seen Days After Disclosure</title><link>https://securityweek.com/exploitation-of-servicenow-vulnerability-seen-days-after-disclosure</link><guid isPermaLink="false">cst-2890</guid><description>A ServiceNow AI platform vulnerability identified as CVE-2026-6875 allows remote code execution and has been exploited in the wild within days of public disclosure. The rapid weaponization demonstrates the speed at which critical flaws in widely deployed enterprise platforms face attack.</description><pubDate>Tue, 21 Jul 2026 08:41:53 GMT</pubDate></item><item><title>Critical ServiceNow code execution flaw now exploited in attacks</title><link>https://bleepingcomputer.com/news/security/critical-servicenow-code-execution-flaw-now-exploited-in-attacks</link><guid isPermaLink="false">cst-2815</guid><description>A critical code execution vulnerability identified as CVE-2026-6875 in the ServiceNow AI Platform is now being actively exploited in attacks, according to threat intelligence research. Organizations running affected ServiceNow instances face immediate risk from threat actors leveraging this flaw.</description><pubDate>Mon, 20 Jul 2026 09:29:20 GMT</pubDate></item><item><title>Vulnerabilities Patched by Fortinet, Ivanti, ServiceNow</title><link>https://securityweek.com/vulnerabilities-patched-by-fortinet-ivanti-servicenow</link><guid isPermaLink="false">cst-2576</guid><description>ServiceNow, Fortinet, and Ivanti each released patches for security vulnerabilities affecting their platforms. A critical vulnerability in ServiceNow's AI platform could allow remote attackers to execute arbitrary code.</description><pubDate>Wed, 15 Jul 2026 11:02:57 GMT</pubDate></item><item><title>Resurgence of In-The-Wild Activity Targeting Critical ServiceNow Vulnerabilities</title><link>https://greynoise.io/blog/in-the-wild-activity-targeting-critical-servicenow-vulnerabilities</link><guid isPermaLink="false">cst-1912</guid><description>GreyNoise observed renewed exploitation attempts targeting three critical ServiceNow vulnerabilities in the wild, with the majority of observed traffic directed at targets in Israel. The activity suggests active and ongoing attacks against unpatched ServiceNow instances.</description><pubDate>Tue, 18 Mar 2025 00:00:00 GMT</pubDate></item><item><title>Enhance existing security workflows with high-fidelity cloud security data from Wiz in ServiceNow</title><link>https://wiz.io/blog/enhance-existing-security-workflows-wiz-servicenow</link><guid isPermaLink="false">cst-1573</guid><description>Wiz has integrated its cloud and container security capabilities with ServiceNow, enabling organizations to incorporate Wiz's security data into their existing CMDB, vulnerability response, and IT service management workflows.</description><pubDate>Wed, 10 Jul 2024 13:13:46 GMT</pubDate></item><item><title>Wiz and ServiceNow VR: Prioritize and respond to cloud vulnerabilities faster</title><link>https://wiz.io/blog/wiz-and-servicenow-vr-prioritize-and-respond-to-cloud-vulnerabilities-faster</link><guid isPermaLink="false">cst-1809</guid><description>Wiz has integrated with ServiceNow Vulnerability Response to streamline cloud vulnerability management and improve risk prioritization in a unified workflow. The integration aims to reduce visibility gaps and accelerate response across cloud environments.</description><pubDate>Tue, 01 Mar 2022 15:58:30 GMT</pubDate></item></channel></rss>