Gbhackers
Critical ServiceNow Vulnerability Allows Unauthenticated User Impersonation
First seen 13 Jan 2026, 11:46 UTC
•

•55.8
Export
Article Content
Browse articles
A critical vulnerability (CVE-2025-12420) in the ServiceNow AI Platform allows unauthenticated attackers to impersonate legitimate users and perform unauthorized operations. Discovered by AppOmni in October 2025, this privilege escalation flaw has prompted immediate remediation efforts by ServiceNow.
Ask AI about this cluster
Answers cite the sources they use
Analyzing cluster data...
Referenced clusters
Something went wrong. Please try again.