An access control flaw in the ServiceNow AI Platform lets an unauthenticated user create, modify, or delete instance data through GraphQL, beyond what the platform intended.
Read more about Emerging Threat: (CVE-2026-86858) ServiceNow AI Platform Unauthenticated Privilege Escalation via GraphQL