ServiceNow has disclosed details of a now-patched critical
security flaw impacting its ServiceNow AI Platform that could
enable an unauthenticated user to impersonate another user and
perform arbitrary actions as that user. The vulnerability, tracked
as CVE-2025-12420, carries a CVSS score of 9.3 out of 10.0 "This
issue [...] could enable an unauthenticated user to impersonate
another user and
Read more https://thehackernews.com/2026/01/servicenow-patches-critical-ai-platform.html

