Skip to content

Known CVE

SaltStack Salt <3002.5 - Auth Bypass

SaltStack Salt before 3002.5 does not honor eauth credentials for the wheel_async client, allowing attackers to remotely run any wheel modules on the master.

CVE-2021-25281

Critical2021CVSS 9.8CWE-287

cve2021 · saltapi · rce · saltstack · unauth · vuln · vkev

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website