A critical zero-day vulnerability discovered in Salesforce‘s default controller has exposed millions of user records across thousands of deployments worldwide. The security flaw, found in the built-in aura://CsvDataImportResourceFamilyController/ACTION$getCsvAutoMap controller, allowed attackers to extract sensitive user information and document details through SOQL injection techniques. SOQL Injection 0-Day Vulnerability The vulnerability was discovered while conducting automated fuzzing […]
The post Critical SOQL Injection 0-Day Vulnerability in Salesforce Affects Millions Worldwide appeared first on Cyber Security News.
This article has been indexed from Cyber Security News