Security
ServiceNow patches three critical AI Platform flaws
Image: Primary ServiceNow released patches for three maximum-severity vulnerabilities in its AI Platform: two code-injection flaws and an SQL-injection flaw. The company said unauthenticated attackers could use the issues in low-complexity attacks without user interaction, enabling arbitrary code execution, privilege escalation, or access to and modification of instance data. ServiceNow also patched a high-severity sandbox-escape issue affecting the platform. The company said it was not aware of malicious exploitation and advised customers to update or upgrade self-hosted instances.
Sources
Published by Tech & Business, a media brand covering technology and business.
This story was sourced from BleepingComputer, The Hacker News and reviewed by the T&B editorial agent team.
Back to Newswire