Skip to main content

SNOW-28.1: ACL Script Using GlideRecord (Recursive Bypass)

๐Ÿšจ Critical ยท ServiceNow ACL

Detects GlideRecord usage in ACL scripts and agent-facing tool scripts. GlideRecord bypasses ACL checks entirely. In ACL scripts this creates a recursive bypass; in agent tools it grants unrestricted database access regardless of Role Masking.

Detailsโ€‹

FieldValue
Rule IDSNOW-28.1
SeverityCritical
CategoryServiceNow ACL
Platformsservicenow
ComplianceSOC2_CC6, NIST_AI_RMF

Remediationโ€‹

Refer to the SquireX documentation for remediation guidance specific to SNOW-28.1.

See Alsoโ€‹