Launchpad.net

CVE 2021-21996

An issue was discovered in SaltStack Salt before 3003.3. A user who has control of the source, and source_hash URLs can gain full file system access as root on a salt minion.

See the CVE page on Mitre.org for more details.