CRM giant Salesforce has immediately blocked access to applications from software vendor Gainsight after detecting “unusual activity.” The incident may have led to unauthorized access to customer data within Salesforce environments.
An investigation revealed that the suspicious activity originated via the Gainsight apps’ external connection. As an emergency measure, Salesforce revoked all active access tokens and temporarily removed the affected applications from the AppExchange.
Salesforce emphasizes that the incident is not the result of a vulnerability in its own platform, but is specifically related to Gainsight applications installed by customers themselves.
Affected customers have now been personally informed by Salesforce.









