ServiceNow disclosed and patched four security vulnerabilities in its AI Platform on August 27, 2026, three of which received the maximum CVSS score of 10.0. The most severe, CVE-2026-18885, is a code-injection flaw in the GraphQL Composite Data API that could let an unauthenticated attacker execute arbitrary code and read or modify instance data; CVE-2026-18886 is an improper access-control flaw in the image-upload processor enabling privilege escalation. All three critical flaws required no privileges and no user interaction to exploit. ServiceNow pushed the fix to its hosted instances automatically, but customers running self-hosted instances must apply the patch themselves.