Cyber security ServiceNow CVE-2026-6875 exploited: patch your instances now ServiceNow CVE-2026-6875 is a CVSS 9.5 pre-auth sandbox escape RCE in the AI Platform, now actively exploited. Patch self-hosted instances immediately. Lars Cornelissen · Jul 21, 2026