Incorrect sharing clauses

Overview

Because Apex generally runs in system context, permissions, field-level security, and sharing rules aren't taken into account during code execution. This might put applications at risk of inadvertently exposing sensitive data.

Business Impact

Increased risk of data breaches, financial loss, and reputational harm. Eroding customer trust and confidence.

Resources

Very Frequent

Incidence

How common is this issue?
64%39%
arrow down25%
lower

Exposure

How long do organizations remain exposed before fixing the problem?
2 years6 months
arrow down75%
shorter
BenchmarkWith Clayton

Frameworks

TrustediconSecureiconData SecurityiconSharing and VisibilityiconA01:2021 – Broken Access Controlicon