Generative AI and the Art of the Possible on...
GenAI is an exciting and rapidly expanding field that is poised to revolutionize the way we work and interact with technology. As with any transformative innovation, it is natural...
Read MoreThirdera generates transformation, digitization, and automation for our customers at the speed of NOW.
We help organizations adopt better patterns of work and get more from ServiceNow. Our team unlocks enterprise potential to elevate experiences across the world of work.
We help organizations adopt better patterns of work and get more from ServiceNow. Our team unlocks enterprise potential to elevate experiences across the world of work.
Digitize and automate workflows to enhance the customer experience, online and in-store.
Streamline complex operations for lower costs and improved customer experiences.
Stay up to date with the insights from ServiceNow experts and explore our blogs, news, case studies culture posts, partner updates and more.
Stay up to date with the insights from ServiceNow experts and explore our blogs, news, case studies culture posts, partner updates and more.
Recent articles may have raised some concerns over a vulnerability with an out-of-box ServiceNow widget that could result in unintended data access. It's important to note this research is centric to all cloud platforms, not just ServiceNow. And, the issue was proactively addressed by ServiceNow back in May 2023 - 5 months prior to the articles being published. While we don't anticipate any significant risk, we have provided some additional information and recommendations below to ensure that your company data remains safe and secure on the ServiceNow platform.
Any data that is housed on a table where the 'public' role has been given read permissions may be accessible to unauthorized users.
ServiceNow performed proactive maintenance on customer instances back in May 2023. This maintenance adjusted the behavior of the "Simple List Widget" to prevent unauthorized access to certain data. The fix is available in Tokyo Patch 8 & 7a, Utah Patch 1a & 2, San Diego Patch 10 Hot Fix 1a (and above). Note: customized or cloned widgets were not fixed. Read the full Knowledge article (KB1279323) here.
If you suspect you are using a cloned or customized "Simple List Widget" or would like to simply review your instance to rule out a potential vulnerability, we recommend you perform the following activities:
ServiceNow diligently monitors threats and acts swiftly to protect customers - as do we. As your ServiceNow platform advisor, we will continue to share information that empowers you to utilize ServiceNow securely. In the meantime, by taking the steps shared above, you can be assured that your instance is safe from unauthorized access.
GenAI is an exciting and rapidly expanding field that is poised to revolutionize the way we work and interact with technology. As with any transformative innovation, it is natural...
Read More2024 is poised to bring unprecedented opportunities and challenges for ServiceNow platform owners in the dynamic landscape of service management. As the platform's technology...
Read MoreDiwali, the festival of lights, is the most anticipated and biggest of all festivals in India. It celebrates the triumph of light over darkness, good over evil, and knowledge over...
Read MoreBusinesses often prioritize the completion of technology projects, neglecting to enroll a post-deployment governance strategy that fuels continuous maturity and value realization...
Read More