CVE-2021-25283 - log back

CVE-2021-25283 edited at 27 Feb 2021 09:18:13
Description
- An issue was discovered in through SaltStack Salt before 3002.5. The jinja renderer does not protect against server side template injection attacks.
+ An issue was discovered in SaltStack Salt before 3002.5. The jinja renderer does not protect against server side template injection attacks.
CVE-2021-25283 edited at 27 Feb 2021 09:17:02
Description
- A security issue was found in SaltStack before versions 3002.5, 3001.6 and 3000.8. The jinja renderer does not protect against server-side template injection attacks.
+ An issue was discovered in through SaltStack Salt before 3002.5. The jinja renderer does not protect against server side template injection attacks.
CVE-2021-25283 edited at 26 Feb 2021 13:33:34
Severity
- Unknown
+ High
Remote
- Unknown
+ Remote
Type
- Unknown
+ Cross-site scripting
Description
+ A security issue was found in SaltStack before versions 3002.5, 3001.6 and 3000.8. The jinja renderer does not protect against server-side template injection attacks.
References
Notes
CVE-2021-25283 created at 26 Feb 2021 13:09:24