CVE-2026-0542

CRITICAL

ServiceNow AI Platform - Unauthenticated Remote Code Execution in Sandbox

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2026-0542. PoCs published by HORKimhab.

AI-analyzed exploit summary The repository contains only placeholder files (README, LICENSE, .gitignore, and a template file) with no actual exploit code or technical details about CVE-2026-0542. It appears to be a template for educational purposes rather than a functional PoC.

Description

ServiceNow has addressed a remote code execution vulnerability that was identified in the ServiceNow AI platform. This vulnerability could enable an unauthenticated user, in certain circumstances, to execute code within the ServiceNow Sandbox.    ServiceNow addressed this vulnerability by deploying a security update to hosted instances. Relevant security updates also have been provided to ServiceNow self-hosted customers and partners. Further, the vulnerability is addressed in the listed patches and hot fixes. While we are not currently aware of exploitation against customer instances, we recommend customers promptly apply appropriate updates or upgrade if they have not already done so.

Exploits (1)

github STUB
by HORKimhab · poc
https://github.com/HORKimhab/CVE-2026-0542

The repository contains only placeholder files (README, LICENSE, .gitignore, and a template file) with no actual exploit code or technical details about CVE-2026-0542. It appears to be a template for educational purposes rather than a functional PoC.

Classification
Stub 95%
Attack Type
Other
Complexity
Trivial
Reliability
Theoretical
Target: unspecified
No auth needed
Prerequisites: none
devstral-2 · analyzed Jun 10, 2026 Full analysis →

References (1)

Core 1

Scores

CVSS v4 9.2
EPSS 0.0034
EPSS Percentile 57.2%
CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-653
Status published
Products (6)
ServiceNow/ServiceNow AI Platform < Australia
ServiceNow/ServiceNow AI Platform < Xanadu Patch 11 Hot Fix 1a
ServiceNow/ServiceNow AI Platform < Yokohama Patch 10 Hot Fix 1b
ServiceNow/ServiceNow AI Platform < Yokohama Patch 12
ServiceNow/ServiceNow AI Platform < Zurich Patch 4 Hot Fix 3b
ServiceNow/ServiceNow AI Platform < Zurich Patch 5
Published Feb 25, 2026
Tracked Since Feb 26, 2026