Researchers Uncover 20+ Configuration Risks, Including Five CVEs, in Salesforce Industry Cloud
Briefly

Recent research has identified over 20 configuration-related vulnerabilities within Salesforce Industry Cloud, allowing potential unauthorized access to sensitive employee and customer data. These issues include misconfigurations in components such as FlexCards and Data Mappers. Security expert Aaron Costello warns that while low-code platforms like Salesforce simplify app development, they can also increase risks if security measures are neglected. Although Salesforce has addressed some vulnerabilities, the majority remain unresolved, leaving customers responsible for implementing fixes themselves, leading to concerns about data protection and compliance.
Cybersecurity researchers discovered over 20 misconfigurations in Salesforce Industry Cloud, putting sensitive data at risk of exposure to unauthorized access.
While low-code platforms enable easier app development, neglecting security can lead to serious vulnerabilities that expose sensitive data, according to security expert Aaron Costello.
Read at The Hacker News
[
|
]