Related Vulnerabilities: CVE-2021-25283  

A security issue was found in SaltStack before versions 3002.5, 3001.6 and 3000.8. The jinja renderer does not protect against server-side template injection attacks.

Severity High

Remote Yes

Type Cross-site scripting

Description

A security issue was found in SaltStack before versions 3002.5, 3001.6 and 3000.8. The jinja renderer does not protect against server-side template injection attacks.

AVG-1624 salt 2019.2.7-1 High Vulnerable