Related Vulnerabilities: CVE-2020-35662  

A security issue was found in SaltStack before versions 3002.5, 3001.6 and 3000.8. There are several places where Salt was not verifying the SSL certificate by default.

Severity High

Remote Yes

Type Certificate verification bypass

Description

A security issue was found in SaltStack before versions 3002.5, 3001.6 and 3000.8. There are several places where Salt was not verifying the SSL certificate by default.

AVG-1624 salt 2019.2.7-1 High Vulnerable

https://saltproject.io/security_announcements/active-saltstack-cve-release-2021-feb-25/