HIGH 7.8 PyPI

Salt junos Module Vulnerable to Code Injection via Specially Crafted YAML Payload

GHSA-77w2-v593-vxvv · CVE-2025-62348 · PYSEC-2026-1894

Published · Modified

AI SAST

Find this class of vulnerability in your own code

Corgea's AI-native static analysis detects vulnerabilities like this one across your repositories, ranks them by exploitability, and returns review-ready fixes.

Description

Salt's junos execution module contained an unsafe YAML decode/load usage. A specially crafted YAML payload processed by the junos module could lead to unintended code execution under the context of the Salt process.

Ready to move

Start Securing

Free, no credit card | First findings in minutes