Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-18251 | Salt vulnerable to arbitrary event injection |
Github GHSA |
GHSA-c46w-gr7f-jm2p | Salt vulnerable to arbitrary event injection |
Tue, 15 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Fri, 13 Jun 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-285 | |
| Metrics |
ssvc
|
Fri, 13 Jun 2025 07:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Arbitrary event injection on Salt Master. The master's "_minion_event" method can be used by and authorized minion to send arbitrary events onto the master's event bus. | |
| Title | CVE-2025-22239 salt advisory | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: vmware
Published:
Updated: 2025-06-13T13:53:14.907Z
Reserved: 2025-01-02T04:30:06.833Z
Link: CVE-2025-22239
Updated: 2025-06-13T13:51:28.177Z
Status : Deferred
Published: 2025-06-13T07:15:21.290
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-22239
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA