Gbhackers
Critical ServiceNow Vulnerability Allows Unauthenticated User Impersonation
First seen 13 Jan 2026, 11:46 UTC
•

•84% similarity
•55.8
Share:
Export
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Browse articles
A critical vulnerability (CVE-2025-12420) in the ServiceNow AI Platform allows unauthenticated attackers to impersonate legitimate users and perform unauthorized operations. Discovered by AppOmni in October 2025, this privilege escalation flaw has prompted immediate remediation efforts by ServiceNow.
ThreatCluster AI