Week in review: Salesforce and ServiceNow portals exposed for 17 months, exploited Metabase 0-day
Overview
Salesforce and ServiceNow portals were exposed for 17 months due to a security vulnerability that allowed unauthorized access to sensitive data. The flaw was discovered by researchers who pointed out that it could have been exploited by attackers to gain critical information from user accounts. The prolonged exposure raises serious concerns about data protection and incident response practices within these platforms. Organizations using these services should review their security measures and consider implementing additional safeguards to protect user data. This incident is a stark reminder of the importance of timely security updates and monitoring for vulnerabilities in widely used software.
Key Takeaways
- Active Exploitation: This vulnerability is being actively exploited by attackers. Immediate action is recommended.
- Affected Systems: Salesforce, ServiceNow
- Action Required: Users are advised to review their security settings and apply any available patches or updates from Salesforce and ServiceNow.
- Timeline: Ongoing since 17 months
Original Article Summary
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: GitHub Dependabot malware alerts now cover eight ecosystems GitHub has flagged npm malware since March 2026. Anyone pulling in a bad PyPI, Maven, RubyGems, NuGet, Go, crates.io, or PHP Composer package has had no such warning, because GitHub’s malware detection only ever watched one ecosystem. That changed this month. Dependabot malware alerts, which had run on npm data alone, now … More → The post Week in review: Salesforce and ServiceNow portals exposed for 17 months, exploited Metabase 0-day appeared first on Help Net Security.
Impact
Salesforce, ServiceNow
Exploitation Status
This vulnerability is confirmed to be actively exploited by attackers in real-world attacks. Organizations should prioritize patching or implementing workarounds immediately.
Timeline
Ongoing since 17 months
Remediation
Users are advised to review their security settings and apply any available patches or updates from Salesforce and ServiceNow.
Additional Information
This threat intelligence is aggregated from trusted cybersecurity sources. For the most up-to-date information, technical details, and official vendor guidance, please refer to the original article linked below.
Related Topics: This incident relates to Vulnerability, Data Breach, Malware, and 1 more.