<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet title="XSL_formatting" type="text/xsl" href="/static/rss/intro.xsl" ?>
  
<rss version="2.0">
    <channel>
        <title>Security Advisories</title>
        <link>http://security.salesforce.com</link>
        <description>undefined</description>
        <lastBuildDate>Wed, 13 May 2026 13:13:07 GMT</lastBuildDate>
        <docs>https://validator.w3.org/feed/docs/rss2.html</docs>
        <generator>https://github.com/jpmonette/feed</generator>
        <language>en</language>
        <item>
            <title><![CDATA[[Security Update] Security Assessments]]></title>
            <link>https://kb.tableau.com/articles/issue/adv-2023-001-tabpy-unauthenticated-access-to-tableau-server</link>
            <guid>https://kb.tableau.com/articles/issue/adv-2023-001-tabpy-unauthenticated-access-to-tableau-server</guid>
            <pubDate>Wed, 28 Jun 2023 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Python Server (TabPy) installations may be configured to execute arbitrary python code without authentication. Products Affected: TabPy 2.8.0 and earlier.]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] CVE-2023-34362 and CVE-2023-35036]]></title>
            <link>https://help.salesforce.com/s/articleView?id=000395641&amp;type=1</link>
            <guid>https://help.salesforce.com/s/articleView?id=000395641&amp;type=1</guid>
            <pubDate>Tue, 13 Jun 2023 09:00:00 GMT</pubDate>
            <description><![CDATA[ Two vulnerabilities could lead to unauthorized access to the MOVEit file transfer product and environment. No impact to Salesforce customer data at this time. On June 16, an additional critical vulnerability related to this issue, CVE-2023-35708, was announced.]]></description>
        </item>
        <item>
            <title><![CDATA[[Process Update] Security Assessments]]></title>
            <link>https://help.salesforce.com/s/articleView?id=000394469&amp;type=1</link>
            <guid>https://help.salesforce.com/s/articleView?id=000394469&amp;type=1</guid>
            <pubDate>Tue, 31 Jan 2023 00:00:00 GMT</pubDate>
            <description><![CDATA[ Customers are no longer required to obtain prior approval before performing security assessments for Salesforce products.]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] CVE-2022-22128]]></title>
            <link>https://kb.tableau.com/articles/Issue/issue-affecting-tableau-server-administration-agent</link>
            <guid>https://kb.tableau.com/articles/Issue/issue-affecting-tableau-server-administration-agent</guid>
            <pubDate>Fri, 14 Oct 2022 11:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Issue affecting Tableau Server Administration Agent]]></description>
        </item>
        <item>
            <title><![CDATA[[ Vulnerability] Tableau security update]]></title>
            <link>https://help.salesforce.com/s/articleView?id=000365859&amp;type=1</link>
            <guid>https://help.salesforce.com/s/articleView?id=000365859&amp;type=1</guid>
            <pubDate>Wed, 22 Jun 2022 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Server logging Personal Access Tokens into internal log repositories]]></description>
        </item>
        <item>
            <title><![CDATA[[ Vulnerability] CVE-2022-22127]]></title>
            <link>https://help.salesforce.com/s/articleView?id=000365493&amp;type=1</link>
            <guid>https://help.salesforce.com/s/articleView?id=000365493&amp;type=1</guid>
            <pubDate>Mon, 23 May 2022 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Broken access control vulnerability in Tableau Server]]></description>
        </item>
        <item>
            <title><![CDATA[[Security Notification] Heroku security notification]]></title>
            <link>https://status.heroku.com/incidents/2413</link>
            <guid>https://status.heroku.com/incidents/2413</guid>
            <pubDate>Fri, 15 Apr 2022 10:45:00 GMT</pubDate>
            <description><![CDATA[[Heroku] GitHub repositories connected to Heroku issue]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] Spring4Shell Security Update]]></title>
            <link>https://help.salesforce.com/s/articleView?id=000365020&amp;type=1</link>
            <guid>https://help.salesforce.com/s/articleView?id=000365020&amp;type=1</guid>
            <pubDate>Wed, 30 Mar 2022 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau, Slack, Service Cloud, Salesforce Einstein, Salesforce Core, Sales Cloud, Quip, Pardot, MuleSoft, Marketing Cloud, Hyperforce, Heroku, Experience Cloud, Commerce Cloud, ClickSoftware] Spring4Shell vulnerability published in March 2022]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] Apache Log4j2 vulnerability]]></title>
            <link>https://help.salesforce.com/s/articleView?id=000363736&amp;type=1</link>
            <guid>https://help.salesforce.com/s/articleView?id=000363736&amp;type=1</guid>
            <pubDate>Fri, 10 Dec 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau, Service Cloud, Slack, Salesforce Einstein, Salesforce Core, Sales Cloud, Quip, Pardot, MuleSoft, Marketing Cloud, Hyperforce, Heroku, Experience Cloud, ClickSoftware, Commerce Cloud] Apache Log4j2 vulnerability published on December 10, 2021]]></description>
        </item>
        <item>
            <title><![CDATA[[Security Update] Nobelium Attacks Targeting Cloud Services, Supply Chains]]></title>
            <link>https://help.salesforce.com/s/articleView?id=000363417&amp;type=1</link>
            <guid>https://help.salesforce.com/s/articleView?id=000363417&amp;type=1</guid>
            <pubDate>Wed, 27 Oct 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[ Response to October 24, 2021, Microsoft blog post]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-017]]></title>
            <link>https://help.salesforce.com/s/articleView?id=000363324&amp;type=1</link>
            <guid>https://help.salesforce.com/s/articleView?id=000363324&amp;type=1</guid>
            <pubDate>Thu, 21 Oct 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Sensitive Information Exposure]]></description>
        </item>
        <item>
            <title><![CDATA[[Security Update] Configuration of Salesforce Developer Experience Command Line Interface]]></title>
            <link>https://help.salesforce.com/s/articleView?id=000363271&amp;type=1</link>
            <guid>https://help.salesforce.com/s/articleView?id=000363271&amp;type=1</guid>
            <pubDate>Mon, 04 Oct 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[ Response to October 4, 2021, CERT Coordination Center note (VU#883754) ]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-016]]></title>
            <link>https://help.salesforce.com/s/articleView?id=000363184&amp;type=1</link>
            <guid>https://help.salesforce.com/s/articleView?id=000363184&amp;type=1</guid>
            <pubDate>Wed, 22 Sep 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Information Disclosure]]></description>
        </item>
        <item>
            <title><![CDATA[[Security Notification] Oracle NetSuite and SAP SuccessFactors connectors issue]]></title>
            <link>https://kb.tableau.com/articles/issue/oracle-netsuite-and-sap-successfactors-connectors-used-in-tableau-gallery-may-be-storing-sensitive-data</link>
            <guid>https://kb.tableau.com/articles/issue/oracle-netsuite-and-sap-successfactors-connectors-used-in-tableau-gallery-may-be-storing-sensitive-data</guid>
            <pubDate>Mon, 16 Aug 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[ Oracle NetSuite and SAP SuccessFactors connectors used in Tableau Gallery may be storing sensitive data in a subset of Tableau On-Premise customers’ logging infrastructure  ]]></description>
        </item>
        <item>
            <title><![CDATA[[Security Update] Configuration of Salesforce Sites and Communities Guest User Access Control Permissions]]></title>
            <link>https://help.salesforce.com/s/articleView?id=000362826&amp;type=1</link>
            <guid>https://help.salesforce.com/s/articleView?id=000362826&amp;type=1</guid>
            <pubDate>Wed, 11 Aug 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[ Response to August 10, 2021, Varonis blog post]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] CVE-2021-1630]]></title>
            <link>https://help.salesforce.com/articleView?id=000362693&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000362693&amp;type=1&amp;mode=1</guid>
            <pubDate>Wed, 28 Jul 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[MuleSoft] XML external entity (XXE) vulnerability in Mule runtime]]></description>
        </item>
        <item>
            <title><![CDATA[[Ransomware] Kaseya Ransomware Attack]]></title>
            <link>https://help.salesforce.com/articleView?id=000359083&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000359083&amp;type=1&amp;mode=1</guid>
            <pubDate>Wed, 07 Jul 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[ Kaseya VSA ransomware attack on July 2, 2021
]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-015]]></title>
            <link>https://help.salesforce.com/articleView?id=000358970&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000358970&amp;type=1&amp;mode=1</guid>
            <pubDate>Tue, 22 Jun 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Improper Data Cache Access Control When Using Initial SQL]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-013]]></title>
            <link>https://help.salesforce.com/articleView?id=000358015&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000358015&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 22 Apr 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Sensitive Information Logged]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] Codecov Bash Uploader Compromise]]></title>
            <link>https://help.salesforce.com/articleView?id=000358035&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000358035&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 15 Apr 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[ Bash Uploader users’ secrets compromised by threat actor]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-009]]></title>
            <link>https://help.salesforce.com/articleView?id=000357456&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000357456&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 25 Mar 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Information Disclosure]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] Microsoft Exchange Server vulnerabilities]]></title>
            <link>https://help.salesforce.com/articleView?id=000357525&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000357525&amp;type=1&amp;mode=1</guid>
            <pubDate>Wed, 24 Mar 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[ Microsoft Exchange Server vulnerabilities published on March 2, 2021 ]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-010]]></title>
            <link>https://help.salesforce.com/articleView?id=000357424&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000357424&amp;type=1&amp;mode=1</guid>
            <pubDate>Tue, 23 Mar 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Server Open Redirect]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-011]]></title>
            <link>https://help.salesforce.com/articleView?id=000357453&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000357453&amp;type=1&amp;mode=1</guid>
            <pubDate>Tue, 23 Mar 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Denial of Service Vulnerability in Tableau Server]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-012]]></title>
            <link>https://help.salesforce.com/articleView?id=000357454&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000357454&amp;type=1&amp;mode=1</guid>
            <pubDate>Tue, 23 Mar 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] HTML Injection in Emails]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] CVE-2021-1627]]></title>
            <link>https://help.salesforce.com/articleView?id=000357383&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000357383&amp;type=1&amp;mode=1</guid>
            <pubDate>Mon, 22 Mar 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[MuleSoft] Server Side Request Forgery in Mule runtime]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] CVE-2021-1626]]></title>
            <link>https://help.salesforce.com/articleView?id=000357382&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000357382&amp;type=1&amp;mode=1</guid>
            <pubDate>Mon, 22 Mar 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[MuleSoft] Remote Code Execution vulnerability in Mule runtime]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] CVE-2021-1628]]></title>
            <link>https://help.salesforce.com/articleView?id=000357384&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000357384&amp;type=1&amp;mode=1</guid>
            <pubDate>Mon, 22 Mar 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[MuleSoft] XML External Entity (XXE) vulnerability in Mule runtime]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-005]]></title>
            <link>https://help.salesforce.com/articleView?id=000356891&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000356891&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 25 Feb 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Server Logs Postgres Repository Password]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-007]]></title>
            <link>https://help.salesforce.com/articleView?id=000356889&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000356889&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 25 Feb 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Database Password Logged in Debug Log]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-008]]></title>
            <link>https://help.salesforce.com/articleView?id=000356888&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000356888&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 25 Feb 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Information Disclosure]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-006]]></title>
            <link>https://help.salesforce.com/articleView?id=000356890&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000356890&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 25 Feb 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Not All Secrets Encrypted In Configuration]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-004]]></title>
            <link>https://help.salesforce.com/articleView?id=000356295&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000356295&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 21 Jan 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Memory Corruption]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-003]]></title>
            <link>https://help.salesforce.com/articleView?id=000356296&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000356296&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 21 Jan 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Authentication Bypass in IPv6 Networks]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-001]]></title>
            <link>https://help.salesforce.com/articleView?id=000356299&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000356299&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 21 Jan 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Reflected Error Message Content Injection]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2021-002]]></title>
            <link>https://help.salesforce.com/articleView?id=000356297&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000356297&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 21 Jan 2021 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Information Disclosure]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-059]]></title>
            <link>https://help.salesforce.com/articleView?id=000356022&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000356022&amp;type=1&amp;mode=1</guid>
            <pubDate>Wed, 16 Dec 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Fixes a Vulnerability in QtWebEngine]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability ] ADV-2020-060]]></title>
            <link>https://help.salesforce.com/articleView?id=000356023&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000356023&amp;type=1&amp;mode=1</guid>
            <pubDate>Wed, 16 Dec 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Server Default Installation Weak Folder Permissions]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-061]]></title>
            <link>https://help.salesforce.com/articleView?id=000356024&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000356024&amp;type=1&amp;mode=1</guid>
            <pubDate>Wed, 16 Dec 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Server Non-Default Installation Weak Folder Permissions]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] SolarWinds Software Compromise]]></title>
            <link>https://help.salesforce.com/articleView?id=000356007&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000356007&amp;type=1&amp;mode=1</guid>
            <pubDate>Tue, 15 Dec 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[ Federal government and Fortune 500 companies compromised by supply chain attack]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] CVE-2020-6939]]></title>
            <link>https://help.salesforce.com/articleView?id=000355686&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000355686&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 19 Nov 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Unauthenticated API Endpoints]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-057]]></title>
            <link>https://help.salesforce.com/articleView?id=000355688&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000355688&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 19 Nov 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] File Path Disclosure of Temporary Files]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-056]]></title>
            <link>https://help.salesforce.com/articleView?id=000355687&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000355687&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 19 Nov 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Unauthenticated API Endpoints]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-058]]></title>
            <link>https://help.salesforce.com/articleView?id=000355713&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000355713&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 19 Nov 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Privilege Escalation in Tableau Products]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-053]]></title>
            <link>https://help.salesforce.com/articleView?id=000355523&amp;language=en_US&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000355523&amp;language=en_US&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 29 Oct 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Non-ASCII characters parsing error]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-052]]></title>
            <link>https://help.salesforce.com/articleView?id=000355522&amp;language=en_US&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000355522&amp;language=en_US&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 29 Oct 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Server Allows External Web Pages In Web Zones]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-054]]></title>
            <link>https://help.salesforce.com/articleView?language=en_US&amp;type=1&amp;mode=1&amp;id=000355524</link>
            <guid>https://help.salesforce.com/articleView?language=en_US&amp;type=1&amp;mode=1&amp;id=000355524</guid>
            <pubDate>Thu, 29 Oct 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Desktop stores plaintext secrets in configuration file]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-055]]></title>
            <link>https://help.salesforce.com/articleView?id=000355525&amp;language=en_US&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000355525&amp;language=en_US&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 29 Oct 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Database Credentials In Log Files]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-051]]></title>
            <link>https://help.salesforce.com/articleView?id=000355243&amp;language=en_US&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000355243&amp;language=en_US&amp;type=1&amp;mode=1</guid>
            <pubDate>Wed, 30 Sep 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Products Integer Overflow]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-046]]></title>
            <link>https://help.salesforce.com/articleView?id=000354775&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000354775&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 27 Aug 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Server Sensitive Values In Logs]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-047]]></title>
            <link>https://help.salesforce.com/articleView?id=000354776&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000354776&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 27 Aug 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Some Permission Changes Don't Take Effect Until Server Restart]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-045]]></title>
            <link>https://help.salesforce.com/articleView?id=000354774&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000354774&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 27 Aug 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Server Logs Contain Webhook URLs]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-044]]></title>
            <link>https://help.salesforce.com/articleView?id=000354773&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000354773&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 27 Aug 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] External Service Connection Fails To Validate Host Name]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-048]]></title>
            <link>https://help.salesforce.com/articleView?id=000354777&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000354777&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 27 Aug 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Tableau Server Sensitive Values In Log File Location]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-049]]></title>
            <link>https://help.salesforce.com/articleView?id=000354778&amp;language=en_US&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000354778&amp;language=en_US&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 27 Aug 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Plaintext Data Source Secrets In Repository]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] ADV-2020-050]]></title>
            <link>https://help.salesforce.com/articleView?id=000354779&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000354779&amp;type=1&amp;mode=1</guid>
            <pubDate>Thu, 27 Aug 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] REST API Returns a Site Configuration Value to Unauthenticated Users]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] CVE-2020-6938]]></title>
            <link>https://help.salesforce.com/articleView?id=000354158&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000354158&amp;type=1&amp;mode=1</guid>
            <pubDate>Tue, 07 Jul 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[Tableau] Sensitive information disclosure vulnerability in Tableau Server]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] CVE-2020-6937]]></title>
            <link>https://help.mulesoft.com/s/article/High-security-issue-affecting-Mule-runtimes-of-all-supported-versions-March-19th-2020</link>
            <guid>https://help.mulesoft.com/s/article/High-security-issue-affecting-Mule-runtimes-of-all-supported-versions-March-19th-2020</guid>
            <pubDate>Tue, 26 May 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[[MuleSoft] Denial of Service vulnerability in Mule runtime]]></description>
        </item>
        <item>
            <title><![CDATA[[Security Enhancements] COVID-19 Business Continuity Statement]]></title>
            <link>https://help.salesforce.com/articleView?id=000352932&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000352932&amp;type=1&amp;mode=1</guid>
            <pubDate>Tue, 17 Mar 2020 00:00:00 GMT</pubDate>
            <description><![CDATA[ Salesforce has not experienced any significant business impacts]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] CVE-2019-15631]]></title>
            <link>https://help.salesforce.com/articleView?id=000351827&amp;language=en_US&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000351827&amp;language=en_US&amp;type=1&amp;mode=1</guid>
            <pubDate>Fri, 29 Nov 2019 00:00:00 GMT</pubDate>
            <description><![CDATA[[MuleSoft] Remote Code Execution in Mule runtime and API Gateway]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] CVE-2019-15630]]></title>
            <link>https://help.mulesoft.com/s/article/Directory-traversal-vulnerability-affecting-runtimes-of-MuleSoft-customers-running-certain-use-cases-of-Mule-flows-and-API-Gateways</link>
            <guid>https://help.mulesoft.com/s/article/Directory-traversal-vulnerability-affecting-runtimes-of-MuleSoft-customers-running-certain-use-cases-of-Mule-flows-and-API-Gateways</guid>
            <pubDate>Fri, 30 Aug 2019 00:00:00 GMT</pubDate>
            <description><![CDATA[[MuleSoft] Directory Traversal in MuleSoft Runtime]]></description>
        </item>
        <item>
            <title><![CDATA[[Security Enhancements] Manage Security Contacts for Your Organization]]></title>
            <link>https://help.salesforce.com/articleView?id=000349483&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000349483&amp;type=1&amp;mode=1</guid>
            <pubDate>Mon, 01 Jul 2019 00:00:00 GMT</pubDate>
            <description><![CDATA[ If your organization is impacted by an information security incident, your organization’s Security Contact(s) will be notified.]]></description>
        </item>
        <item>
            <title><![CDATA[[Security Enhancements] Enhancements to Security of Community and Portal Users]]></title>
            <link>https://help.salesforce.com/articleView?id=000323376&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000323376&amp;type=1&amp;mode=1</guid>
            <pubDate>Mon, 13 May 2019 00:00:00 GMT</pubDate>
            <description><![CDATA[ Potential impact to default sharing settings]]></description>
        </item>
        <item>
            <title><![CDATA[[Email Scam] Phishing Campaign]]></title>
            <link>https://help.salesforce.com/articleView?id=000318462&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000318462&amp;type=1&amp;mode=1</guid>
            <pubDate>Wed, 28 Nov 2018 00:00:00 GMT</pubDate>
            <description><![CDATA[ Salesforce-themed phishing campaign]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] Salesforce Security Vulnerability]]></title>
            <link>https://help.salesforce.com/articleView?id=000312863&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000312863&amp;type=1&amp;mode=1</guid>
            <pubDate>Fri, 05 Oct 2018 00:00:00 GMT</pubDate>
            <description><![CDATA[ Security vulnerability impact on Salesforce Sites and Communities]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability] Twitter Account Activity API]]></title>
            <link>https://help.salesforce.com/articleView?id=000312848&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000312848&amp;type=1&amp;mode=1</guid>
            <pubDate>Fri, 21 Sep 2018 00:00:00 GMT</pubDate>
            <description><![CDATA[ Vulnerability of Twitter Account Activity API]]></description>
        </item>
        <item>
            <title><![CDATA[[Vulnerability/Ransomware] MS17-010 Vulnerability (AKA EternalBlue)]]></title>
            <link>https://help.salesforce.com/articleView?id=000320088&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000320088&amp;type=1&amp;mode=1</guid>
            <pubDate>Tue, 27 Jun 2017 00:00:00 GMT</pubDate>
            <description><![CDATA[ Malware leveraging MS17-010 (AKA EternalBlue) Vulnerability]]></description>
        </item>
        <item>
            <title><![CDATA[[Malware] TrickBot / The Trick]]></title>
            <link>https://help.salesforce.com/articleView?id=000319415&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000319415&amp;type=1&amp;mode=1</guid>
            <pubDate>Wed, 21 Jun 2017 00:00:00 GMT</pubDate>
            <description><![CDATA[ Malware may target Salesforce Users.]]></description>
        </item>
        <item>
            <title><![CDATA[[Ransomware] WannaCry Ransomware]]></title>
            <link>https://help.salesforce.com/articleView?id=000317521&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000317521&amp;type=1&amp;mode=1</guid>
            <pubDate>Mon, 15 May 2017 00:00:00 GMT</pubDate>
            <description><![CDATA[ Ransomware targeting Windows "Eternal Blue" vulnerability.]]></description>
        </item>
        <item>
            <title><![CDATA[[Email Scam] Google Docs Phishing Campaign]]></title>
            <link>https://trust.salesforce.com/en/security/stay-current-security/</link>
            <guid>https://trust.salesforce.com/en/security/stay-current-security/</guid>
            <pubDate>Wed, 03 May 2017 00:00:00 GMT</pubDate>
            <description><![CDATA[ Google Docs invitation containing a phishing link.]]></description>
        </item>
        <item>
            <title><![CDATA[[Service Provider Vulnerability] Cloudflare Vulnerability]]></title>
            <link>https://help.salesforce.com/articleView?id=000320268&amp;type=1&amp;mode=1</link>
            <guid>https://help.salesforce.com/articleView?id=000320268&amp;type=1&amp;mode=1</guid>
            <pubDate>Mon, 27 Feb 2017 00:00:00 GMT</pubDate>
            <description><![CDATA[ Cloudflare, an embedded content delivery network and internet security services provider, disclosed a security vulnerability in their edge servers, which could expose information such as HTTP cookies, authentication tokens, and HTTP POST bodies.]]></description>
        </item>
    </channel>
</rss>