CVE-2020-11651, CVE-2020-11652: Critical Salt Framework Vulnerabilities Exploited in the Wild
by Rody Quinlan on May 3, 2020
Shortly after the public disclosure of critical vulnerabilities in the Salt framework, exploitation attempts were observed, as two open source projects were breached using these flaws
Update 05/04/20: The proof-of-concept section has been updated to reflect the availability of PoC scripts.