ServiceNow Sandbox RCE Under Active Exploit u2014 What African CISOs Need to Know
Defused spotted it first: someone is actively exploiting a pre-auth sandbox escape in ServiceNow, tracked as CVE-2026-6875. ServiceNow patched it last week. The exploit code is public. And the attackers are already changing their methods faster than anyone expected. What happened Threat intel firm Defused reported on July 20 that CVE-2026-6875, a sandbox escape in…