Many Public Salesforce Sites are Leaking Private Data
Krebs on Security
APRIL 27, 2023
The guest access feature allows unauthenticated users to view specific content and resources without needing to log in. This misconfigured Salesforce Community site from the state of Vermont was leaking pandemic assistance loan application data, including names, SSNs, email address and bank account information. Washington, D.C.
Let's personalize your content