HomeDefault status
unaffected
Any version before Spring 2025
affected
Description
Client-Side Enforcement of Server-Side Security vulnerability in Salesforce OmniStudio (FlexCards) allows bypass of required permission check. This impacts OmniStudio: before Spring 2025
Problem types
CWE-602: Client-Side Enforcement of Server-Side Security
Product status
Any version before Spring 2025
References
help.salesforce.com/s/articleView?id=004980323&type=1