AI analysis
CVE-2026-86857 is an authorization bypass (broken access control) flaw in the ServiceNow AI Platform, rated 8.4 (High) under CVSS 4.0. A low-privileged authenticated user can trigger it through normal platform requests that bypass entitlement checks, gaining access to confidential data they are not entitled to see — and, per the CVSS vector's high subsequent-system confidentiality impact, potentially data in connected systems as well. ServiceNow states it automatically deployed the fix to its hosted (SaaS) instances and provided the update to partners and self-hosted customers, who must apply it themselves. No specific affected version numbers were disclosed in the advisory. The vendor reports no known malicious exploitation, the issue is not in CISA's KEV catalog, and no public proof-of-concept exists.
What to do: Self-hosted and partner-hosted customers should immediately apply the ServiceNow-provided update or upgrade to a patched release, since hosted instances were fixed automatically. Verify with ServiceNow or your hosting partner that your instance has received the fix, especially for partner-managed deployments. Review platform and application access logs for authenticated users accessing records or AI Platform data outside their entitlements, tighten role assignments to least privilege, and rotate credentials for any accounts showing anomalous cross-tenant or cross-record access.
Estimated exposure
massTens of millions of platform users across ~30,000 enterprise customer deployments; residual unpatched exposure likely limited to a smaller subset of… — ServiceNow publicly reports roughly 30,000 enterprise customers including ~80% of the Fortune 500, but the majority run on ServiceNow-hosted instances that the vendor already auto-patched, leaving partner- and self-hosted instances as the…
Order-of-magnitude estimate by the model from install counts, market share and public scan data it knows; verify before quoting.
Description
ServiceNow has remediated an authorization bypass security issue that was identified in the ServiceNow AI Platform. This security issue, if exploited, could enable an authenticated user to access data within the ServiceNow AI Platform that the user otherwise would not be entitled to access, potentially enabling further unintended access. ServiceNow deployed an update to hosted instances, and ServiceNow provided the update to our partners and self-hosted customers. We are not currently aware of malicious exploitation against ServiceNow instances. We recommend customers promptly apply appropriate updates or upgrade to a patched release if they have not already done so.