Where
-Infinity
0

Salesforce WorkbenchReflected XSS in footer.php in Workbench Allows Attackers to Hijack Authenticated Sessions

Risk 38
Severity
5.1
First published (updated )

Salesforce Marketing Cloud EngagementImproper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability in …

Risk 76
Severity
9.4
First published (updated )

Salesforce Marketing Cloud EngagementImproper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability in …

Risk 61
Severity
9.8
EPSS
0.02%
First published (updated )

Salesforce Marketing Cloud EngagementImproper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability in …

Risk 61
Severity
9.8
EPSS
0.02%
First published (updated )

Salesforce Marketing Cloud EngagementHard-coded Cryptographic Key vulnerability in Salesforce Marketing Cloud Engagement (CloudPages, For…

Risk 61
Severity
9.8
EPSS
0.02%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Salesforce Marketing Cloud EngagementUse of a Broken or Risky Cryptographic Algorithm vulnerability in Salesforce Marketing Cloud Engagem…

Risk 61
Severity
9.8
EPSS
0.01%
First published (updated )

Salesforce Uni2TSCode Injection

Risk 62
Severity
9.8
EPSS
0.07%
First published (updated )

The RegisterGainsight CEO downplays breach, says only a 'handful' of customers had data stolen

First published (updated )

The RegisterShinyHunters 'does not like Salesforce at all'

First published (updated )

The RegisterSalesforce-linked data breach claims 200+ victims, has ShinyHunters’ fingerprints all over it

First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

BleepingComputerSalesforce investigates customer data theft via Gainsight breach

First published (updated )

Salesforce Agentforce Vibes ExtensionIncorrect Permission Assignment for Critical Resource vulnerability in Salesforce Agentforce Vibes E…

Risk 27
Severity
5.3
First published (updated )

Salesforce Agentforce Vibes ExtensionCode Injection

Risk 27
Severity
5.3
First published (updated )

Salesforce Agentforce Vibes ExtensionCode Injection

Risk 40
Severity
6.5
First published (updated )

Salesforce Mulesoft Anypoint Code BuilderIncorrect Permission Assignment for Critical Resource vulnerability in Salesforce Mulesoft Anypoint …

Risk 27
Severity
5.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Salesforce Mulesoft Anypoint Code BuilderCode Injection

Risk 27
Severity
5.3
First published (updated )

Salesforce Mulesoft Anypoint Code BuilderCode Injection

Risk 40
Severity
6.5
First published (updated )

BleepingComputerPenn hacker claims to have stolen 1.2 million donor records in data breach

First published (updated )

BleepingComputerFBI takes down BreachForums portal used for Salesforce extortion

First published (updated )

The RegisterTake this rob and shove it! Salesforce issues stern retort to ransomware extort

First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

ZDNetHackers stole 1 billion records from Salesforce customer databases with this simple trick - don't fall for it

First published (updated )
News
ZDNet

BleepingComputerShinyHunters launches Salesforce data leak site to extort 39 victims

First published (updated )

BleepingComputerAllianz Life says July data breach impacts 1.5 million people

First published (updated )

The RegisterSalesforce faces class action after Salesloft breach

First published (updated )

The RegisterPrompt injection – and a $5 domain – trick Salesforce Agentforce into leaking sales

First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

ZDNetBattered by cyberattacks, Salesforce faces a trust problem - and a potential class action lawsuit

First published (updated )
News
ZDNet

ZDNetBattered by cyberattacks, is Salesforce facing a trust problem?

First published (updated )
News
ZDNet

Salesforce Salesforce CLIUncontrolled Search Path Element vulnerability in Salesforce Salesforce CLI on Windows allows Replac…

Risk 56
Severity
8.8
EPSS
0.06%
First published (updated )

BleepingComputerShinyHunters claims 1.5 billion Salesforce records stolen in Drift hacks

First published (updated )

BleepingComputerFBI warns of UNC6040, UNC6395 hackers stealing Salesforce data

First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203