Skip to main content
CyberReportedHighDevelopingFeatured
6.7

SalesBleed: Salesforce Agentforce Flaws Enable Zero-Click Data Theft

Researchers disclosed three vulnerabilities in Salesforce Agentforce, a low-code AI agent platform, that could allow attackers to hijack trusted agents, exfiltrate data, and launch phishing campaigns without user interaction. The flaws, dubbed 'SalesBleed,' are unpatched as of publication, and exploitation could compromise enterprise data across Salesforce deployments. This is a notable supply-chain risk given Agentforce's integration into enterprise workflows.

SecurityWeek1 day agoUSengCredibility 26%View source

Score Breakdown

Mosaic Score6.7
Model confidence0.5
Significance0.8
Source credibility0.3
Source

Related signals

8 found