redis
Latest CVEs
The 15 most recently published vulnerabilities affecting redis.
- CVE-2026-25243redis-server RESTORE invalid memory access may allow remote code execution8.8
- CVE-2026-23631redis-server Lua use-after-free may allow remote code execution8.1
- CVE-2026-23479redis-server use-after-free in unblock client flow may allow remote code execution8.8
- CVE-2025-62507Redis: Bug in XACKDEL may lead to stack overflow and potential RCE8.8
- CVE-2025-49844Redis Lua Use-After-Free may lead to remote code execution9.9
- CVE-2025-46819Redis is vulnerable to DoS via specially crafted LUA scripts6.3
- CVE-2025-46818Redis: Authenticated users can execute LUA scripts as a different user6.0
- CVE-2025-46817Lua library commands may lead to integer overflow and potential RCE7.0
- CVE-2025-46686Redis through 8.0.3 allows memory consumption via a multi-bulk command composed of many bulks, sent by an authenticated user. This occurs because the server allocates memory for the command argumen...3.5
- CVE-2025-48367Redis DoS Vulnerability due to bad connection error handling7.5
- CVE-2025-32023Redis allows out of bounds writes in hyperloglog commands leading to RCE7.0
- CVE-2025-27151redis-check-aof may lead to stack overflow and potential RCE4.7
- CVE-2025-21605Redis DoS Vulnerability due to unlimited growth of output buffers abused by unauthenticated client7.5
- CVE-2025-29923go-redis allows potential out of order responses when `CLIENT SETINFO` times out during connection establishment3.7
- CVE-2024-51741Redis allows denial-of-service due to malformed ACL selectors4.4