Description
The ServiceNow is vulnerable to the XSS (cross-site scripting). The logout endpoint interacts with its DOM in an insecure way.
Remediation
Upgrade to the latest version of ServiceNow
References
Related Vulnerabilities
Drupal Core 9.3.x Cross-Site Scripting (9.3.0 - 9.3.2)
WordPress Plugin Advanced Custom Fields (ACF) Cross-Site Scripting (5.7.7)
WordPress Plugin WebARX Cross-Site Scripting (1.3.0)
Joomla! Core 2.5.x Cross-Site Scripting (2.5.0 - 2.5.3)
WordPress Plugin Gallery Plugin for WordPress-Envira Photo Gallery Cross-Site Scripting (1.7.6)