Executive brief
Salt's on demand pillar functionality vulnerable to arbitrary command injections
Affected products
- PyPI salt
Junglewise Threat Intelligence
CVE-2025-22237 · Severity: low · CVSS 3.1 · Published 2026-07-07
Vendors: PyPI.
Salt's on demand pillar functionality vulnerable to arbitrary command injections