saltstack
Safeguard articles tagged "saltstack" — guides, analysis, and best practices for software supply chain and application security.
5 articles
CVE-2020-16846: SaltStack Salt Shell Injection Vulnerability
CVE-2020-16846 affects SaltStack Salt and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2020-11651: SaltStack Salt Authentication Bypass Vulnerability
CVE-2020-11651 affects SaltStack Salt and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2020-11652: SaltStack Salt Path Traversal Vulnerability
CVE-2020-11652 affects SaltStack Salt and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
SaltStack Directory Traversal Paired With Auth Bypass (CV...
CVE-2020-11652, a directory traversal flaw in SaltStack's salt-master, paired with an auth bypass to enable full remote compromise. Impact, CVSS/KEV context, and fixes.
CVE-2020-11651: Authentication bypass in SaltStack salt-m...
CVE-2020-11651, a critical CVSS 9.8 authentication bypass in SaltStack's salt-master, enabled unauthenticated RCE and fueled real-world attacks on LineageOS, Ghost, and DigiCert.
Self-healing security runs on Safeguard.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.