CVE-2018-15750: SaltStack Salt

Medium severity, CVSS 5.3. EPSS: 4.3% chance of exploitation in the next 30 days.

Directory Traversal vulnerability in salt-api in SaltStack Salt before 2017.7.8 and 2018.3.x before 2018.3.3 allows remote attackers to determine which files exist on the server.

Affected products

  • SaltStack Salt: before 2017.7.8 (fixed in 2017.7.8); from 2018.3.0, before 2018.3.3 (fixed in 2018.3.3)

Published 2018-10-24. Last modified 2026-06-17.