Wire · regulatory
Critical ServiceNow code execution flaw now exploited in attacks
◆ Sectors
◆ Geography
◆ Source
◆ Verified
Fusion42 · 20 July 2026 · Fusion42 review
ServiceNow has released a critical remote code execution vulnerability that is now being actively exploited in attacks against customer instances. The flaw allows unauthenticated attackers to execute arbitrary code on affected systems.
This Wire brief sits within Fusion42's coverage of Cybersecurity and Enterprise Software, and 3 sources have reported it between 20 Jul 2026 and 21 Jul 2026.
◆ ◆ The Wire takeaway
If your product runs on ServiceNow or your customers depend on it, your incident response plan is now live: patch before the next working day. Every hour without patching is an open door for attackers to get inside your customer's most sensitive data.
◆ Coverage
3 sources · first reported 20 Jul 2026 · latest 21 Jul 2026
◆ Related on Wire
◆ Topics