7.8
/ 10
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Description
Salt's junos execution module contained an unsafe YAML decode/load usage. A specially crafted YAML payload processed by the junos module could lead to unintended code execution under the context of the Salt process.
Basic Information
ID
CVE-2025-62348
Source
vmware
Published
Jan 30, 2026 at 18:57
Modified
Jan 30, 2026 at 19:30
Affected Product
Vendor
Salt Project
Product
Salt
Version
3006.0
Affected Versions
Salt Project Salt 3006.0
Salt Project Salt 3007.0
Salt Project Salt 3007.0