ForcedLeak Vulnerability in Salesforce Agentforce Risks CRM Data Exposure via Prompt Injection
371/68 Monday, September 29, 2025 Researchers from Noma Labs have disclosed a critical vulnerability in Salesforce Agentforce, dubbed “ForcedLeak” (CVSS 9.4), which could be exploited through indirect prompt injection attacks to gain access to sensitive CRM data. The flaw affects organizations that have enabled the Web-to-Lead feature, stemming from insufficient AI context validation, over-compliance with […]