Skip to main content

AGENTFORCE-21.2: Insecure Output Handling (Agent-to-XSS)

๐Ÿ”ด High ยท Data Exfiltration / Injection

Detects Flow screens targeted by agent actions that render LLM-generated output without sanitization. An adversarial LLM response containing HTML/JavaScript will execute in the Salesforce user's browser context. Tier B rule 34.1 extends this detection to full LWC component graph traversal.

Detailsโ€‹

FieldValue
Rule IDAGENTFORCE-21.2
SeverityHigh
CategoryData Exfiltration / Injection
ComplianceHIPAA, PCI_DSS, EU_AI_ACT_HIGH_RISK

Remediationโ€‹

Refer to the SquireX documentation for remediation guidance specific to AGENTFORCE-21.2.

See Alsoโ€‹