CVE-2025-62348: Salt Project Salt
High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.
Salt's junos execution module contained an unsafe YAML decode/load usage. A specially crafted YAML payload processed by the junos module could lead to unintended code execution under the context of the Salt process.
Affected products
- Salt Project Salt: from 3006.0, before 3006.17 (fixed in 3006.17); from 3007.0, before 3007.9 (fixed in 3007.9)
Published 2026-01-30. Last modified 2026-06-17.