Back to directory
WRITEUP #435

Security Vulnerabilities in Apex Code Could Leak Salesforce Data

RCESalesforceSOQL injection
byNitay Bachrach
Program
-
Published
Feb 20, 2024
Added to HackDex
Feb 27, 2024
Read Full Writeuphttps://www.varonis.com/blog/apex-code-vulnerabilities
RELATED WRITEUPS
Vulnerabilities in Open Source C2 Frameworks
RCEOS command injection
[2,500$ Bug Bounty Write-Up] Remote Code Execution (RCE) via unclaimed Node package
RCEDependency confusion
Data Theft in Salesforce: Manipulating Public Links
OtherSOQL injection
Attacking PowerShell CLIXML Deserialization
DeserializationInsecure deserialization
Zero-Click Calendar invite — Critical zero-click vulnerability chain in macOS
RCEArbitrary file write

Built with ❤️ by Shubham Rawat