Skip to content
RequestGuard Vulnerabilities
Pricing

salt

Portable, distributed, remote execution and configuration management system

PyPI latest 3008.2 Apache Software License 2.0

Evidence path

Version, exploitation, severity

RequestGuard keeps these facts separate. A KEV match refers to a CVE, while OSV supplies the package and version match.

1

Latest version

3008.2

No matching published advisory returned

2

Known exploitation

No KEV match

Checked by exact CVE identifier

3

Highest advisory severity

Critical

69 active advisories

Check an exact version

The registry confirms the version, then OSV checks advisories for that exact value.

Published records

Advisories

69
GHSA-qr38-h96j-2j3w critical CISA KEV

SaltStack Salt Command Injection in netapi ssh client

Affected range

ECOSYSTEM: introduced 0; fixed 2015.8.13ECOSYSTEM: introduced 2016.3.0; fixed 2016.3.8ECOSYSTEM: introduced 2016.11.0; fixed 2016.11.10ECOSYSTEM: introduced 2017.5.0; fixed 2017.7.8ECOSYSTEM: introduced 2018.2.0; fixed 2018.3.5

Fixed versions: 2015.8.13, 2016.3.8, 2016.11.10, 2017.7.8, 2018.3.5, 2019.2.6, 3000.4, 3001.2, 3002.1, 2015.8.10, 2016.3.4, 2016.3.6, 2016.11.3, 2016.11.6, 2017.7.4, 2019.2.5, 3000.3

GHSA-pjhf-vpx3-33r3 critical CISA KEV

SaltStack Salt Unauthenticated Remote Code Execution

Affected range

ECOSYSTEM: introduced 0; fixed 2019.2.4ECOSYSTEM: introduced 3000; fixed 3000.2ECOSYSTEM: introduced 0; fixed 2019.2.4; introduced 3000; fixed 3000.2

Fixed versions: 2019.2.4, 3000.2

GHSA-vp49-2g4r-m3x3 high CISA KEV

SaltStack Salt is vulnerable Arbitrary Directory Access

Affected range

ECOSYSTEM: introduced 0; fixed 2019.2.4ECOSYSTEM: introduced 3000; fixed 3000.2ECOSYSTEM: introduced 0; fixed 2019.2.4; introduced 3000; fixed 3000.2

Fixed versions: 2019.2.4, 3000.2

SaltStack Salt Directory traversal vulnerability in minion id validation

Affected range

ECOSYSTEM: introduced 0; fixed 2016.11.7ECOSYSTEM: introduced 2017.7.0; fixed 2017.7.1ECOSYSTEM: introduced 0; fixed 2016.11.7; introduced 2017.7; fixed 2017.7.1

Fixed versions: 2016.11.7, 2017.7.1

Salt vulnerable to directory traversal attack in file receiving method

Affected range

ECOSYSTEM: introduced 3007.0rc1; fixed 3007.4ECOSYSTEM: introduced 3006.0rc1; fixed 3006.12ECOSYSTEM: introduced 3006.0rc1; fixed 3006.12; introduced 3007.0rc1; fixed 3007.4

Fixed versions: 3007.4, 3006.12

SaltStack Salt Directory Traversal vulnerability

Affected range

ECOSYSTEM: introduced 0; fixed 2015.8.13ECOSYSTEM: introduced 2016.3.0; fixed 2016.11.5ECOSYSTEM: introduced 2016.11.7; fixed 2016.11.10ECOSYSTEM: introduced 2017.5.0; fixed 2017.7.8ECOSYSTEM: introduced 2018.2.0; last affected 2018.3.5

Fixed versions: 2015.8.13, 2016.11.5, 2016.11.10, 2017.7.8, 2019.2.8, 3000.7, 3001.5, 3002.3, 2015.8.10, 2016.3.4, 2016.3.6, 2016.3.8, 2016.11.3, 2019.2.0rc1, 2019.2.5, 3000.6, 3001.4, 3002.5

SaltStack Salt SQL Injection vulnerability in mysql.user_chpass function

Affected range

ECOSYSTEM: introduced 2018.3.0; fixed 2018.3.4ECOSYSTEM: introduced 0; fixed 2018.3.4

Fixed versions: 2018.3.4

SaltStack Salt Remote command execution and incorrect access control when using salt-api

Affected range

ECOSYSTEM: introduced 2017.7.0; fixed 2017.7.8ECOSYSTEM: introduced 2018.3.0; fixed 2018.3.3ECOSYSTEM: introduced 2016.11.0; fixed 2016.11.10ECOSYSTEM: introduced 2018.3.0; fixed 2018.3.3; introduced 0; fixed 2017.7.8

Fixed versions: 2017.7.8, 2018.3.3, 2016.11.10

SaltStack Salt is vulnerable to shell injection via ProxyCommand argument

Affected range

ECOSYSTEM: introduced 0; fixed 2015.8.13ECOSYSTEM: introduced 2016.3.0; fixed 2016.11.5ECOSYSTEM: introduced 2016.11.7; fixed 2016.11.10ECOSYSTEM: introduced 2017.5.0; fixed 2017.7.8ECOSYSTEM: introduced 2018.2.0; last affected 2018.3.5

Fixed versions: 2015.8.13, 2016.11.5, 2016.11.10, 2017.7.8, 2019.2.8, 3000.7, 3001.5, 3002.3, 2015.8.10, 2016.3.4, 2016.3.6, 2016.3.8, 2016.11.3, 2019.2.0rc1, 2019.2.5, 3000.6, 3001.4, 3002.5

SaltStack Salt Server Side Template Injection

Affected range

ECOSYSTEM: introduced 0; fixed 2015.8.13ECOSYSTEM: introduced 2016.3.0; fixed 2016.11.5ECOSYSTEM: introduced 2016.11.7; fixed 2016.11.10ECOSYSTEM: introduced 2017.5.0; fixed 2017.7.8ECOSYSTEM: introduced 2018.2.0; last affected 2018.3.5

Fixed versions: 2015.8.13, 2016.11.5, 2016.11.10, 2017.7.8, 2019.2.8, 3000.7, 3001.5, 3002.5, 2015.8.10, 2016.3.4, 2016.3.6, 2016.3.8, 2016.11.3, 2019.2.0rc1, 2019.2.5, 3000.6, 3001.4

SaltStack Salt Improper Authentication vulnerability

Affected range

ECOSYSTEM: introduced 0; fixed 2015.8.13ECOSYSTEM: introduced 2016.3.0; fixed 2016.11.5ECOSYSTEM: introduced 2016.11.7; fixed 2016.11.10ECOSYSTEM: introduced 2017.5.0; fixed 2017.7.8ECOSYSTEM: introduced 2018.2.0; last affected 2018.3.5

Fixed versions: 2015.8.13, 2016.11.5, 2016.11.10, 2017.7.8, 2019.2.8, 3000.7, 3001.5, 3002.3, 2015.8.10, 2016.3.4, 2016.3.6, 2016.3.8, 2016.11.3, 2019.2.0rc1, 2019.2.5, 3000.6, 3001.4, 3002.5

SaltStack Salt eauth tokens can be used once after expiration

Affected range

ECOSYSTEM: introduced 0; fixed 2015.8.13ECOSYSTEM: introduced 2016.3.0; fixed 2016.11.5ECOSYSTEM: introduced 2016.11.7; fixed 2016.11.10ECOSYSTEM: introduced 2017.5.0; fixed 2017.7.8ECOSYSTEM: introduced 2018.2.0; last affected 2018.3.5

Fixed versions: 2015.8.13, 2016.11.5, 2016.11.10, 2017.7.8, 3000.7, 3001.5, 3002.3, 2019.2.8, 2015.8.10, 2016.3.4, 2016.3.6, 2016.3.8, 2016.11.3, 2019.2.0rc1, 2019.2.5, 3000.6, 3001.4, 3002.5

SaltStack Salt command injection in the Salt-API when using the Salt-SSH client

Affected range

ECOSYSTEM: introduced 0; fixed 2015.8.13ECOSYSTEM: introduced 2016.3.0; fixed 2016.11.5ECOSYSTEM: introduced 2016.11.7; fixed 2016.11.10ECOSYSTEM: introduced 2017.5.0; fixed 2017.7.8ECOSYSTEM: introduced 2018.2.0; last affected 2018.3.5

Fixed versions: 2015.8.13, 2016.11.5, 2016.11.10, 2017.7.8, 2019.2.8, 3000.7, 3001.5, 3002.3, 2015.8.10, 2016.3.4, 2016.3.6, 2016.3.8, 2016.11.3, 2019.2.0rc1, 2019.2.5, 3000.6, 3001.4, 3002.5

SaltStack Salt Improper Validation of eauth credentials and tokens in salt-netapi

Affected range

ECOSYSTEM: introduced 0; fixed 2015.8.13ECOSYSTEM: introduced 2016.3.0; fixed 2016.3.8ECOSYSTEM: introduced 2016.11.0; fixed 2016.11.10ECOSYSTEM: introduced 2017.5.0; fixed 2017.7.8ECOSYSTEM: introduced 2018.2.0; fixed 2018.3.5

Fixed versions: 2015.8.13, 2016.3.8, 2016.11.10, 2017.7.8, 2018.3.5, 2019.2.7, 3000.5, 3001.3, 3002.1, 2015.8.10, 2016.3.4, 2016.3.6, 2016.11.3, 2016.11.6, 2017.7.4, 2019.2.5, 3000.3

salt password information leaked in debug logs

Affected range

ECOSYSTEM: introduced 2015.5; fixed 2015.5.6ECOSYSTEM: introduced 2015.8; fixed 2015.8.1GIT: introduced 0; fixed c0689e32154c41f59840ae10ffc5fbfa30618710ECOSYSTEM: introduced 2015.5; fixed 2015.5.6; introduced 2015.8; fixed 2015.8.1

Fixed versions: 2015.5.6, 2015.8.1, c0689e32154c41f59840ae10ffc5fbfa30618710

SaltStack Salt Directory traversal vulnerability in minion id validation

Affected range

ECOSYSTEM: introduced 0; fixed 2016.3.8ECOSYSTEM: introduced 2016.11.0; fixed 2016.11.8ECOSYSTEM: introduced 2017.7.0; fixed 2017.7.2GIT: introduced 0; fixed 80d90307b07b3703428ecbb7c8bb468e28a9ae6dECOSYSTEM: introduced 0; fixed 2016.3.8; introduced 2016.11; fixed 2016.11.8; introduced 2017.7; fixed 2017.7.2

Fixed versions: 2016.3.8, 2016.11.8, 2017.7.2, 80d90307b07b3703428ecbb7c8bb468e28a9ae6d

Salt vulnerable to arbitrary event injection

Affected range

ECOSYSTEM: introduced 3006.0rc1; fixed 3006.12ECOSYSTEM: introduced 3007.0rc1; fixed 3007.4ECOSYSTEM: introduced 3006.0rc1; fixed 3006.12; introduced 3007.0rc1; fixed 3007.4

Fixed versions: 3006.12, 3007.4

Path traversal in saltstack

Affected range

ECOSYSTEM: introduced 0; fixed 3005.5ECOSYSTEM: introduced 3006.0; fixed 3006.6ECOSYSTEM: introduced 0; fixed 3005.5; introduced 3006.0; fixed 3006.6

Fixed versions: 3005.5, 3006.6

Salt has minion event bus authorization bypass vulnerability

Affected range

ECOSYSTEM: introduced 3007.0; fixed 3007.4ECOSYSTEM: introduced 3006.0; fixed 3006.12ECOSYSTEM: introduced 3006.0; fixed 3006.12; introduced 3007.0; fixed 3007.4

Fixed versions: 3007.4, 3006.12

Salt Authentication Protocol Version Downgrade Allows Minion Impersonation

Affected range

ECOSYSTEM: introduced 3006.12; fixed 3006.17ECOSYSTEM: introduced 3007.4; fixed 3007.9ECOSYSTEM: introduced 3006.12; fixed 3006.17; introduced 3007.4; fixed 3007.9

Fixed versions: 3006.17, 3007.9

Show 44 more advisories
GHSA-pmj6-9f8c-8g2m Saltstack Salt Unauthenticated Arbitrary Code Execution
GHSA-qvh6-3j7x-3hq7 Salt can cause Git Providers to get wrong data
GHSA-7wx3-vr2f-6p29 SaltStack Privilege Escalation vulnerability
GHSA-jmv9-5gx8-7xpf Minion identity not validated in saltstack
GHSA-8r7r-x48r-pf8f SaltStack Salt arbitrary command execution in Salt-api via ssh_client
GHSA-mfr3-9cj8-h2qm SaltStack Salt Insecure Temporary File Creation
GHSA-fpxm-fprw-6hxj Salt's PAM auth fails to reject locked accounts
GHSA-xf37-qcvf-7m57 Improper Authentication in SaltStack Salt
GHSA-2q4g-wfm6-5fpm SaltStack Improper Verification of Cryptographic Signature
GHSA-w589-r335-4f55 SaltStack Salt Improper Certificate Validation
GHSA-v89f-4mc4-h6w9 Salt has insufficient argument validation in several modules
GHSA-xcx4-5wq7-g5g7 SaltStack Salt Information Exposure
GHSA-qr3x-v97p-42xw SaltStack insecurely uses /tmp
GHSA-f22j-37jj-cxw9 SaltStack MITM SSH attack in salt-ssh
GHSA-hcjf-rp5h-g5h3 Command Injection in SaltStack Salt
GHSA-phhw-3wc9-8q75 SaltStack Salt command injection via a crafted process name
GHSA-qx72-q6w3-qgc7 SaltStack Salt Improper SSL Certificate Validation
GHSA-657p-cj5r-mjrh SaltStack Salt Denial of Service via a crafted authentication request
GHSA-qcr3-hr2f-6557 SaltStack Salt Permissions Bypass
GHSA-pf7h-h2wq-m7pg Exposure of Resource to Wrong Sphere in salt
GHSA-5r3f-3m3j-wcj2 SaltStack Salt Authentication Bypass by Capture-replay
GHSA-vqh4-crjf-jjxx Salt Improper Access Control
GHSA-8j9g-c9rp-jvg4 Salt vulnerable to Improper Certificate Validation
GHSA-f2h7-4f84-8qrm SaltStack Salt Authentication Bypass when using the local_batch client from salt-api
GHSA-7f3f-x5f5-79gw Salt's file contents overwrite the VirtKey class
GHSA-4277-m35q-7c9w Salt preflight script could be attacker controlled
GHSA-fcr4-h6c4-rvvp Salt's on demand pillar functionality vulnerable to arbitrary command injections
GHSA-xh32-3m67-qjgf Salt allows arbitrary directory creation or file deletion
GHSA-r546-h3ff-q585 Salt vulnerable to directory traversal attack in minion file cache creation
GHSA-q27c-j6j9-53w3 Directory creation by malicious user in saltstack
GHSA-989c-m532-p2hv Salt's worker process vulnerable to denial of service through file read operation
GHSA-4j59-vv55-q6h3 Salt's salt.auth.pki module does not properly authenticate callers
GHSA-vpjg-wmf8-29h9 Salt vulnerable to denial of service
GHSA-92pw-mff9-jqgm Salt improper handling of tmp files
GHSA-6grp-75pq-c8cj SaltStack has insecure /tmp file handling in salt/modules/chef.py
GHSA-jx34-pppm-gjvr SaltStack Salt Directory Traversal vulnerability in salt-api
GHSA-r55w-xph5-xvx2 SaltStack Salt Cleartext Storage of Sensitive Information via cmdmod
GHSA-3c56-vx6v-q5vh SaltStack Salt Allows creating certificates with weak file permissions
GHSA-v2rp-9cpj-pfw2 Salt Insecure configuration of PAM external authentication service
GHSA-q2x6-8gfj-hjxw salt leaks git usernames and passwords to the log
GHSA-cvcc-5x92-gmhc SaltStack Salt Improper Authentication via Man in the Middle Attack
GHSA-6prw-8xhm-h247 Salt uses weak permissions on the cache data
PYSEC-2023-47 Buffer Overflow vulnerability in Saltstack v.3003 and before allows attacker to execute arbitrary code via the func variable in salt/salt/modules/status.py file.
PYSEC-2013-13 Salt (aka SaltStack) before 0.17.1 allows remote attackers to execute arbitrary YAML code via unspecified vectors. NOTE: the vendor states that this might not be a vulnerability because the YAML to be loaded has already been determined to be safe.