Known Vulnerabilities for Salt by Saltstack
Listed below are 10 of the newest known vulnerabilities associated with "Salt" by "Saltstack".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-105756 json | vLLM is an inference and serving engine for large language models. Prior to 0.30.0, OpenAI-compatible request models accept a... | Not Provided | 2026-10-05 | 2026-10-06 |
| CVE-2026-100647 json | vLLM versions before 0.29.0 contain a denial-of-service vulnerability in the cache_salt parameter accepted on OpenAI-compatib... | Not Provided | 2026-09-26 | 2026-09-28 |
| CVE-2026-97469 json | PostgreSQL Anonymizer contains a vulnerability that allows unprivileged masked users to repeatedly call the anon.hash() funct... | Not Provided | 2026-09-25 | 2026-09-25 |
| CVE-2026-96552 json | A vulnerability was identified in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. The affected element is... | Not Provided | 2026-09-23 | 2026-09-24 |
| CVE-2026-93394 json | A flaw in libmongoc's SCRAM authentication implementation caused the client to continue the authentication handshake and tran... | Not Provided | 2026-09-17 | 2026-09-18 |
| CVE-2026-92921 json | admin3 through 3.0.0 stores account passwords using single-round MD5 with only the username as salt and no key derivation fun... | Not Provided | 2026-09-17 | 2026-09-18 |
| CVE-2026-90333 json | In the Linux kernel, the following vulnerability has been resolved: dm-integrity: replace forgeable discard filler with a ke... | Not Provided | 2026-09-17 | 2026-09-17 |
| CVE-2026-87965 json | The Easy Appointments WordPress plugin before 4.0.2.2 does not use an unguessable token to authorize its mail-link appointmen... | Not Provided | 2026-09-18 | 2026-09-18 |
| CVE-2026-82759 json | Use of a One-Way Hash with a Predictable Salt vulnerability in team-alembic AshAuthentication allows readers of the audit sto... | Not Provided | 2026-09-17 | 2026-09-17 |
| CVE-2026-82380 json | Cross-Site Request Forgery (CSRF) in Apache Roller 6.1.5 allows a remote attacker to cause a logged-in user to perform state-... | Not Provided | 2026-09-28 | 2026-09-28 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Saltstack | Salt | 3002.2 | |||
| Application | Saltstack | Salt | 3002.1 | |||
| Application | Saltstack | Salt | 3002 | |||
| Application | Saltstack | Salt | 3001.3 | |||
| Application | Saltstack | Salt | 3001.2 | |||
| Application | Saltstack | Salt | 3001.1 | |||
| Application | Saltstack | Salt | 3001 | |||
| Application | Saltstack | Salt | 3000.3 | |||
| Application | Saltstack | Salt | 3000.2 | |||
| Application | Saltstack | Salt | 3000.13 | |||
| Application | Saltstack | Salt | 3000.1 | |||
| Application | Saltstack | Salt | 3000.0 | |||
| Application | Saltstack | Salt | 3000 | |||
| Application | Saltstack | Salt | 2019.8.0 | |||
| Application | Saltstack | Salt | 2019.2.5 | |||
| Application | Saltstack | Salt | 2019.2.4 | |||
| Application | Saltstack | Salt | 2019.2.3 | |||
| Application | Saltstack | Salt | 2019.2.2 | |||
| Application | Saltstack | Salt | 2019.2.1 | |||
| Application | Saltstack | Salt | 2019.2.0 |