ThreatCluster

ServiceNow and PaperCut Vulnerabilities Under Active Exploitation

First seen 31 Aug 2026, 19:59 UTC Socradar 72

Article Content

Browse articles
ThreatCluster

ServiceNow has released patches for multiple vulnerabilities rated CVSS 10.0, indicating critical security flaws. Concurrently, the CVE-2026-82078 vulnerability in PaperCut has been confirmed as actively exploited in the wild, with CISA adding it to their KEV list on the same day. The PaperCut vulnerability allows remote code execution, posing significant risks to affected systems. Organizations using ServiceNow and PaperCut are urged to apply patches immediately to mitigate potential breaches. The scope of impact includes various sectors relying on these platforms, with high stakes for data integrity and system availability. Both vulnerabilities highlight the ongoing threat landscape and the necessity for timely updates and monitoring.

Key Points: • ServiceNow has patched multiple CVSS 10.0 vulnerabilities. • CVE-2026-82078 in PaperCut is actively exploited and added to CISA's KEV list. • Immediate patching is critical for organizations using affected systems.

Timeline

2026-08-28
CVE-2026-82078 published
The vulnerability in PaperCut was published, allowing remote code execution.
Socradar
2026-08-31
CVE-2026-82078 added to CISA KEV
CISA confirmed active exploitation of the PaperCut vulnerability and added it to their KEV catalog.
Socradar
2026-08-31
ServiceNow patches vulnerabilities
ServiceNow released patches for multiple critical vulnerabilities rated CVSS 10.0.
Socradar