{"schema_version":1,"title":"Saltstack vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 8 vulnerabilities in Saltstack: 0 in the last 7 days and 1 in the last 90 days, 4 of them critical and 3 exploited in the wild. The most recent, CVE-2024-22232, was published on 7 July 2026. 1 technology has a page of its own.","url":"https://junglewise.ai/threats/vendors/saltstack","json_url":"https://junglewise.ai/threats/vendors/saltstack.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/vendors/saltstack","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"vendor","counts":{"high":0,"all_time":8,"critical":4,"exploited":3,"last_7_days":0,"last_30_days":0,"last_90_days":1,"last_365_days":1},"latest":[{"cve":"CVE-2024-22232","cvss":3.1,"epss":0.0084,"slug":"cve-2024-22232-saltstack-salt-path-traversal-in-file-server","title":"PYSEC-2026-1891 - Path traversal in saltstack","severity":"low","exploited":false,"published_at":"2026-07-07T14:34:35.573683+00:00","url":"https://junglewise.ai/threats/cve-2024-22232-saltstack-salt-path-traversal-in-file-server"},{"cve":"CVE-2017-12791","cvss":9.8,"epss":0.0467,"slug":"cve-2017-12791-saltstack-salt-directory-traversal-in-minion-id-validation","title":"SaltStack Salt directory traversal in minion id validation","severity":"critical","exploited":false,"published_at":"2022-05-17T01:22:50+00:00","url":"https://junglewise.ai/threats/cve-2017-12791-saltstack-salt-directory-traversal-in-minion-id-validation"},{"cve":"CVE-2022-22934","cvss":3.1,"epss":0.0088,"slug":"cve-2022-22934-saltstack-salt-improper-verification-of-cryptographic-signature","title":"PYSEC-2022-171 - An issue was discovered in SaltStack Salt in versions before 3002.8, 3003.4, 3004.1. Salt Masters do not sign pillar data with the minion’s","severity":"low","exploited":false,"published_at":"2022-03-29T17:15:00+00:00","url":"https://junglewise.ai/threats/cve-2022-22934-saltstack-salt-improper-verification-of-cryptographic-signature"},{"cve":"CVE-2020-17490","cvss":3.1,"epss":0.0042,"slug":"cve-2020-17490-saltstack-salt-weak-file-permissions-in-tls-certificate-creation","title":"PYSEC-2020-105 - The TLS module within SaltStack Salt through 3002 creates certificates with weak file permissions.","severity":"low","exploited":false,"published_at":"2020-11-06T08:15:00+00:00","url":"https://junglewise.ai/threats/cve-2020-17490-saltstack-salt-weak-file-permissions-in-tls-certificate-creation"},{"cve":"CVE-2020-25592","cvss":3.1,"epss":0.5773,"slug":"cve-2020-25592-saltstack-salt-authentication-bypass-in-salt-netapi","title":"PYSEC-2020-106 - In SaltStack Salt through 3002, salt-netapi improperly validates eauth credentials and tokens. A user can bypass authentication and invoke S","severity":"low","exploited":false,"published_at":"2020-11-06T08:15:00+00:00","url":"https://junglewise.ai/threats/cve-2020-25592-saltstack-salt-authentication-bypass-in-salt-netapi"},{"cve":"CVE-2020-16846","cvss":3.1,"epss":0.9959,"slug":"cve-2020-16846-saltstack-salt-shell-injection-vulnerability","title":"PYSEC-2020-104 - An issue was discovered in SaltStack Salt through 3002. Sending crafted web requests to the Salt API, with the SSH client enabled, can resul","severity":"critical","exploited":true,"published_at":"2020-11-06T08:15:00+00:00","url":"https://junglewise.ai/threats/cve-2020-16846-saltstack-salt-shell-injection-vulnerability"},{"cve":"CVE-2020-11651","cvss":3.1,"epss":0.9661,"slug":"cve-2020-11651-saltstack-salt-authentication-bypass-vulnerability","title":"PYSEC-2020-102 - An issue was discovered in SaltStack Salt before 2019.2.4 and 3000 before 3000.2. The salt-master process ClearFuncs class does not properly","severity":"critical","exploited":true,"published_at":"2020-04-30T17:15:00+00:00","url":"https://junglewise.ai/threats/cve-2020-11651-saltstack-salt-authentication-bypass-vulnerability"},{"cve":"CVE-2020-11652","cvss":3.1,"epss":0.8618,"slug":"cve-2020-11652-saltstack-salt-path-traversal-vulnerability","title":"PYSEC-2020-103 - An issue was discovered in SaltStack Salt before 2019.2.4 and 3000 before 3000.2. The salt-master process ClearFuncs class allows access to","severity":"critical","exploited":true,"published_at":"2020-04-30T17:15:00+00:00","url":"https://junglewise.ai/threats/cve-2020-11652-saltstack-salt-path-traversal-vulnerability"}],"vendor":{"hub":true,"name":"Saltstack","slug":"saltstack","homepage":"https://www.saltstack.com/","description":"SaltStack (now part of VMware) provides software for automating the management and configuration of IT infrastructure.","url":"https://junglewise.ai/threats/vendors/saltstack"},"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":1},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"most_severe":[{"cve":"CVE-2020-16846","cvss":3.1,"epss":0.9959,"slug":"cve-2020-16846-saltstack-salt-shell-injection-vulnerability","title":"PYSEC-2020-104 - An issue was discovered in SaltStack Salt through 3002. Sending crafted web requests to the Salt API, with the SSH client enabled, can resul","severity":"critical","exploited":true,"published_at":"2020-11-06T08:15:00+00:00","url":"https://junglewise.ai/threats/cve-2020-16846-saltstack-salt-shell-injection-vulnerability"},{"cve":"CVE-2020-11651","cvss":3.1,"epss":0.9661,"slug":"cve-2020-11651-saltstack-salt-authentication-bypass-vulnerability","title":"PYSEC-2020-102 - An issue was discovered in SaltStack Salt before 2019.2.4 and 3000 before 3000.2. The salt-master process ClearFuncs class does not properly","severity":"critical","exploited":true,"published_at":"2020-04-30T17:15:00+00:00","url":"https://junglewise.ai/threats/cve-2020-11651-saltstack-salt-authentication-bypass-vulnerability"},{"cve":"CVE-2020-11652","cvss":3.1,"epss":0.8618,"slug":"cve-2020-11652-saltstack-salt-path-traversal-vulnerability","title":"PYSEC-2020-103 - An issue was discovered in SaltStack Salt before 2019.2.4 and 3000 before 3000.2. The salt-master process ClearFuncs class allows access to","severity":"critical","exploited":true,"published_at":"2020-04-30T17:15:00+00:00","url":"https://junglewise.ai/threats/cve-2020-11652-saltstack-salt-path-traversal-vulnerability"},{"cve":"CVE-2017-12791","cvss":9.8,"epss":0.0467,"slug":"cve-2017-12791-saltstack-salt-directory-traversal-in-minion-id-validation","title":"SaltStack Salt directory traversal in minion id validation","severity":"critical","exploited":false,"published_at":"2022-05-17T01:22:50+00:00","url":"https://junglewise.ai/threats/cve-2017-12791-saltstack-salt-directory-traversal-in-minion-id-validation"},{"cve":"CVE-2020-25592","cvss":3.1,"epss":0.5773,"slug":"cve-2020-25592-saltstack-salt-authentication-bypass-in-salt-netapi","title":"PYSEC-2020-106 - In SaltStack Salt through 3002, salt-netapi improperly validates eauth credentials and tokens. A user can bypass authentication and invoke S","severity":"low","exploited":false,"published_at":"2020-11-06T08:15:00+00:00","url":"https://junglewise.ai/threats/cve-2020-25592-saltstack-salt-authentication-bypass-in-salt-netapi"},{"cve":"CVE-2022-22934","cvss":3.1,"epss":0.0088,"slug":"cve-2022-22934-saltstack-salt-improper-verification-of-cryptographic-signature","title":"PYSEC-2022-171 - An issue was discovered in SaltStack Salt in versions before 3002.8, 3003.4, 3004.1. Salt Masters do not sign pillar data with the minion’s","severity":"low","exploited":false,"published_at":"2022-03-29T17:15:00+00:00","url":"https://junglewise.ai/threats/cve-2022-22934-saltstack-salt-improper-verification-of-cryptographic-signature"},{"cve":"CVE-2024-22232","cvss":3.1,"epss":0.0084,"slug":"cve-2024-22232-saltstack-salt-path-traversal-in-file-server","title":"PYSEC-2026-1891 - Path traversal in saltstack","severity":"low","exploited":false,"published_at":"2026-07-07T14:34:35.573683+00:00","url":"https://junglewise.ai/threats/cve-2024-22232-saltstack-salt-path-traversal-in-file-server"},{"cve":"CVE-2020-17490","cvss":3.1,"epss":0.0042,"slug":"cve-2020-17490-saltstack-salt-weak-file-permissions-in-tls-certificate-creation","title":"PYSEC-2020-105 - The TLS module within SaltStack Salt through 3002 creates certificates with weak file permissions.","severity":"low","exploited":false,"published_at":"2020-11-06T08:15:00+00:00","url":"https://junglewise.ai/threats/cve-2020-17490-saltstack-salt-weak-file-permissions-in-tls-certificate-creation"}],"generated_at":"2026-09-26T13:07:00.120236+00:00","technologies":[{"name":"Saltstack Salt","slug":"salt","vulnerabilities":8,"url":"https://junglewise.ai/threats/technologies/salt"}]}