# ServiceNow AI Platform patches five access flaws

Published: 2026-09-25 · Severity: routine · Sectors: technology
Canonical: https://vorant.io/reports/3f499e86-fc39-509c-b8e4-8ee20f3e13bc/servicenow-ai-platform-patches-five-access-flaws

> CIS advisory details five ServiceNow AI Platform vulnerabilities, including SQLi and auth bypass, that could let attackers access or modify data without authorization.

CIS/MS-ISAC issued an advisory covering five vulnerabilities in ServiceNow's AI Platform affecting Yokohama, Zurich, and Australia release lines prior to specific patch/hotfix levels. The flaws span authorization bypass, improper access control, missing authorization, and a SQL injection vulnerability. The most severe issues could allow unauthenticated attackers to create, modify, or delete instance data, execute arbitrary SQL against the underlying database, or extract data beyond intended access, potentially leading to privilege escalation. One flaw (CVE-2026-86857) requires authentication, while the others (CVE-2026-86858, CVE-2026-13016, CVE-2026-86859, CVE-2026-86860) can be exploited without authentication in certain circumstances.

There are no current reports of in-the-wild exploitation. ServiceNow has already remediated these issues, and the advisory maps the risk to MITRE ATT&CK's Exploit Public-Facing Application (T1190) technique under Initial Access. Defenders running affected ServiceNow versions should prioritize patching to the specified hotfix levels and apply standard vulnerability management practices, including patch automation, vulnerability scanning, network segmentation, and least-privilege enforcement, as outlined in the CIS Safeguards referenced in the bulletin.

## Mentioned in this report

- Vulnerabilities: CVE-2026-13016, CVE-2026-86857, CVE-2026-86858, CVE-2026-86859, CVE-2026-86860

Source reporting: https://www.cisecurity.org/advisory/multiple-vulnerabilities-in-servicenows-ai-platform-could-allow-for-unauthorized-access_2026-102

---

This is the free public brief from Vorant Threat Intelligence. When citing, attribute "Vorant" and link https://vorant.io/reports/3f499e86-fc39-509c-b8e4-8ee20f3e13bc/servicenow-ai-platform-patches-five-access-flaws.
In the app the same report carries its extracted indicators, its detections with Splunk SPL and Microsoft KQL already written, live profiles of the actors and CVEs it names, and the vendor research on the same campaign. Slack alerts fire on the vendors, sectors and countries a reader follows. A new account starts with three days of all of it, no card: https://vorant.io/signup
