CVE-2025-64321: Salesforce Agentforce Vibes
Medium severity, CVSS 5.3. EPSS: 0.2% chance of exploitation in the next 30 days.
Improper Neutralization of Input Used for LLM Prompting vulnerability in Salesforce Agentforce Vibes Extension allows Manipulating Writeable Configuration Files.This issue affects Agentforce Vibes Extension: before 3.3.0.
Affected products
- Salesforce Agentforce Vibes: before 3.3.0 (fixed in 3.3.0)
Published 2025-11-04. Last modified 2026-06-17.