Subscriptions
Tracking
Sign in to view the affected projects.
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 04 Feb 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Salesforce agentforce Vibes
|
|
| Weaknesses | CWE-94 | |
| CPEs | cpe:2.3:a:salesforce:agentforce_vibes:*:*:*:*:*:visual_studio_code:*:* | |
| Vendors & Products |
Salesforce agentforce Vibes
|
Wed, 05 Nov 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
ssvc
|
Wed, 05 Nov 2025 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Salesforce
Salesforce agentforce Vibes Extension |
|
| Vendors & Products |
Salesforce
Salesforce agentforce Vibes Extension |
Wed, 05 Nov 2025 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 04 Nov 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Tue, 04 Nov 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
Tue, 04 Nov 2025 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Input Used for LLM Prompting vulnerability in Salesforce Agentforce Vibes Extension allows Code Injection.This issue affects Agentforce Vibes Extension: before 3.2.0. | |
| Weaknesses | CWE-1427 | |
| References |
|
Status: PUBLISHED
Assigner: Salesforce
Published:
Updated: 2025-11-05T14:32:23.386Z
Reserved: 2025-10-30T15:17:24.110Z
Link: CVE-2025-64320
Updated: 2025-11-04T21:33:23.627Z
Status : Analyzed
Published: 2025-11-04T19:17:11.693
Modified: 2026-02-04T19:54:35.390
Link: CVE-2025-64320
No data.
OpenCVE Enrichment
Updated: 2025-11-05T10:47:23Z