Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
PYSEC-2026-1894
  • PyPI/salt
Salt junos Module Vulnerable to Code Injection via Specially Crafted YAML Payload 07 Jul
  • Fix available
  • Severity - 7.3 (High)
PYSEC-2026-1902
  • PyPI/salt
Salt Authentication Protocol Version Downgrade Allows Minion Impersonation 07 Jul
  • Fix available
  • Severity - 7.5 (High)
PYSEC-2026-1896
  • PyPI/salt
Salt's worker process vulnerable to denial of service through file read operation 07 Jul
  • Fix available
  • Severity - 5.6 (Medium)
PYSEC-2026-1895
  • PyPI/salt
Salt's file contents overwrite the VirtKey class 07 Jul
  • Fix available
  • Severity - 5.6 (Medium)
PYSEC-2026-1898
  • PyPI/salt
Salt's on demand pillar functionality vulnerable to arbitrary command injections 07 Jul
  • Fix available
  • Severity - 6.7 (Medium)
PYSEC-2026-1893
  • PyPI/salt
Salt's salt.auth.pki module does not properly authenticate callers 07 Jul
  • Fix available
  • Severity - 6.4 (Medium)
PYSEC-2026-1903
  • PyPI/salt
Salt allows arbitrary directory creation or file deletion 07 Jul
  • Fix available
  • Severity - 6.3 (Medium)
PYSEC-2026-1901
  • PyPI/salt
Salt vulnerable to directory traversal attack in minion file cache creation 07 Jul
  • Fix available
  • Severity - 4.2 (Medium)
PYSEC-2026-1899
  • PyPI/salt
Salt has minion event bus authorization bypass vulnerability 07 Jul
  • Fix available
  • Severity - 8.1 (High)
PYSEC-2026-1897
  • PyPI/salt
Salt vulnerable to arbitrary event injection 07 Jul
  • Fix available
  • Severity - 8.1 (High)
PYSEC-2026-1892
  • PyPI/salt
Salt preflight script could be attacker controlled 07 Jul
  • Fix available
  • Severity - 6.7 (Medium)
PYSEC-2026-1900
  • PyPI/salt
Directory creation by malicious user in saltstack 07 Jul
  • Fix available
  • Severity - 5.0 (Medium)
PYSEC-2026-1891
  • PyPI/salt
Path traversal in saltstack 07 Jul
  • Fix available
  • Severity - 7.7 (High)
PYSEC-2026-748
  • PyPI/salt
SaltStack RSA Key Generation allows remote users to decrypt communications 02 Jul
  • Fix available
  • Severity - 8.1 (High)
PYSEC-2026-529
  • PyPI/salt
Salt vulnerable to directory traversal attack in file receiving method 29 Jun
  • Fix available
  • Severity - 9.6 (Critical)
GHSA-77w2-v593-vxvv
  • PyPI/salt
Salt junos Module Vulnerable to Code Injection via Specially Crafted YAML Payload 30 Jan
  • Fix available
  • Severity - 7.3 (High)