ServiceNow discloses security issue affecting customer data, but won’t reveal much about what actually happened


  • ServiceNow fixes API flaws that let unauthorized attackers query some customer instance tables
  • The issue primarily affects customers on the Australia release or older versions with custom configurations
  • Administrators are encouraged to review logs for /api/now/related_list_edit requests, especially from 51.159.98.241

ServiceNow has told some of its customers that cybercriminals were able to exploit a flaw in an API endpoint in an attempt to gain access to their data.

In a support bulletin posted on its customer support portal, the company said it had addressed an issue “that could allow an unauthorized user, under certain circumstances, to gain greater access to ServiceNow instances than intended.”

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top