<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Redis (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/redis.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/redis-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Redis (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:33 +0000</lastBuildDate>
  <item>
    <title>[Critical] CVE-2026-48172 – LiteSpeed User-End cPanel Plugin before 2.4.5 allows privilege escalation (possi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-48172</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-48172</guid>
    <pubDate>Thu, 21 May 2026 02:16:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-48172</strong></p>
  <p>LiteSpeed User-End cPanel Plugin before 2.4.5 allows privilege escalation (possibly to root), as exploited in the wild in May 2026. Detection is best done via a command line of grep -rE "cpanel_jsonapi_func=redisAble" /var/cpanel/logs /usr/local/cpanel/logs/ 2>/dev/null in Bash. If you get no output, you have not been hit with exploitation of the vulnerability. If there is output, we recommend yo…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-48172">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-33233 – AutoGPT is a workflow automation platform for creating, deploying, and managing ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33233</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33233</guid>
    <pubDate>Tue, 19 May 2026 02:16:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-33233</strong></p>
  <p>AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents. In versions 0.6.34 through 0.6.51, the backend deserializes Redis cache bytes using pickle.loads without integrity/authenticity checks. The write path serializes values with pickle.dumps(...) into Redis and the read path blindly invokes pickle.loads(...) on bytes with no HMAC…</p>
  <p><strong>CVSS:</strong> 7.6 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33233">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-44552 – Open WebUI is a self-hosted artificial intelligence platform designed to operate...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-44552</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-44552</guid>
    <pubDate>Fri, 15 May 2026 20:16:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-44552</strong></p>
  <p>Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.0, the tool_servers and terminal_servers keys in utils/tools.py do use a prefix. When two or more Open WebUI instances share a Redis database (a supported and documented deployment pattern, e.g., for multi-region deployments, blue-green setups, or cluster topologies), the unprefixed key…</p>
  <p><strong>CVSS:</strong> 8.7 · <strong>CWE:</strong> CWE-668</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-44552">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-25589 – RedisBloom is a probabilistic data structures module for Redis. In all versions ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-25589</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-25589</guid>
    <pubDate>Tue, 05 May 2026 17:17:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-25589</strong></p>
  <p>RedisBloom is a probabilistic data structures module for Redis. In all versions of RedisBloom before 2.8.20, the module does not properly validate serialized values processed through the Redis RESTORE command. An authenticated attacker with permission to execute RESTORE on a server with the RedisBloom module loaded can supply a crafted serialized payload that triggers invalid memory access and ma…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25589">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-25588 – RedisTimeSeries is a time-series module for Redis. In all versions before 1.12.1...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-25588</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-25588</guid>
    <pubDate>Tue, 05 May 2026 17:17:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-25588</strong></p>
  <p>RedisTimeSeries is a time-series module for Redis. In all versions before 1.12.14 of RedisTimeSeries, the module does not properly validate serialized values processed through the Redis RESTORE command. An authenticated attacker with permission to execute RESTORE on a server with the RedisTimeSeries module loaded can supply a crafted serialized payload that triggers invalid memory access and may…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25588">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-25243 – Redis is an in-memory data structure store. In versions of redis-server up to 8...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-25243</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-25243</guid>
    <pubDate>Tue, 05 May 2026 17:17:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-25243</strong></p>
  <p>Redis is an in-memory data structure store. In versions of redis-server up to 8.6.3, the RESTORE command does not properly validate serialized values. An authenticated attacker with permission to execute RESTORE can supply a crafted serialized payload that triggers invalid memory access and may lead to remote code execution. A workaround is to restrict access to the RESTORE command with ACL rules…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25243">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-23631 – Redis is an in-memory data structure store. In all versions of redis-server with...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-23631</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-23631</guid>
    <pubDate>Tue, 05 May 2026 17:17:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-23631</strong></p>
  <p>Redis is an in-memory data structure store. In all versions of redis-server with Lua scripting, an authenticated attacker can exploit the master-replica synchronization mechanism to trigger a use-after-free on replicas where replica-read-only is disabled or can be disabled, which may lead to remote code execution. A workaround is to prevent users from executing Lua scripts or avoid using replicas…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-23631">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-23479 – Redis is an in-memory data structure store. In redis-server from 7.2.0 until 8.6...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-23479</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-23479</guid>
    <pubDate>Tue, 05 May 2026 17:17:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-23479</strong></p>
  <p>Redis is an in-memory data structure store. In redis-server from 7.2.0 until 8.6.3, the unblock client flow does not handle an error return from `processCommandAndResetClient` when re-executing a blocked command. If a blocked client is evicted during this flow, an authenticated attacker can trigger a use-after-free that may lead to remote code execution. This has been patched in version 8.6.3.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-23479">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-42088 – OpenC3 COSMOS provides the functionality needed to send commands to and receive ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-42088</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-42088</guid>
    <pubDate>Mon, 04 May 2026 18:16:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-42088</strong></p>
  <p>OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. Prior to version 7.0.0-rc3, the Script Runner widget allows users to execute Python and Ruby scripts directly from the openc3-COSMOS-script-runner-api container. Because all the docker containers share a network, users can execute specially crafted scripts to bypass the API perm…</p>
  <p><strong>CVSS:</strong> 9.6 · <strong>CWE:</strong> CWE-250</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42088">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-42472 – Unsafe deserialization vulnerability in MixPHP Framework 2.x thru 2.2.17. The se...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-42472</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-42472</guid>
    <pubDate>Fri, 01 May 2026 16:16:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-42472</strong></p>
  <p>Unsafe deserialization vulnerability in MixPHP Framework 2.x thru 2.2.17. The session and cache handlers use unserialize() on data from Redis in the RedisHandler object.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42472">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-40872 – mailcow: dockerized is an open source groupware/email suite based on docker. In ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-40872</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-40872</guid>
    <pubDate>Tue, 21 Apr 2026 20:17:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-40872</strong></p>
  <p>mailcow: dockerized is an open source groupware/email suite based on docker. In versions prior to 2026-03b, the admin dashboard's Autodiscover logs render the EMailAddress value (logged as the "user" field) without HTML escaping. By submitting an unauthenticated Autodiscover request with a crafted EMailAddress containing HTML/JS, the payload is stored in Redis and executed when an admin views the…</p>
  <p><strong>CVSS:</strong> 9.3 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40872">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-35172 – Distribution is a toolkit to pack, ship, store, and deliver container content. P...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-35172</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-35172</guid>
    <pubDate>Mon, 06 Apr 2026 20:16:25 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-35172</strong></p>
  <p>Distribution is a toolkit to pack, ship, store, and deliver container content. Prior to 3.1.0, distribution can restore read access in repo a after an explicit delete when storage.cache.blobdescriptor: redis and storage.delete.enabled: true are both enabled. The delete path clears the shared digest descriptor but leaves stale repo-scoped membership behind, so a later Stat or Get from repo b repop…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-35172">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-35052 – D-Tale is the combination of a Flask back-end and a React front-end to view &amp; an...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-35052</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-35052</guid>
    <pubDate>Mon, 06 Apr 2026 18:16:42 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-35052</strong></p>
  <p>D-Tale is the combination of a Flask back-end and a React front-end to view & analyze Pandas data structures. Prior to 3.22.0, users hosting D-Tale publicly while using a redis or shelf storage layer could be vulnerable to remote code execution allowing attackers to run malicious code on the server. This vulnerability is fixed in 3.22.0.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-35052">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-34977 – Aperi'Solve is an open-source steganalysis web platform. Prior to 3.2.1, when up...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34977</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34977</guid>
    <pubDate>Mon, 06 Apr 2026 17:17:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-34977</strong></p>
  <p>Aperi'Solve is an open-source steganalysis web platform. Prior to 3.2.1, when uploading a JPEG, a user can specify an optional password to accompany the JPEG. This password is then directly passed into an expect command, which is then subsequently passed into a bash -c command, without any form of sanitization or validation. An unauthenticated attacker can achieve root-level RCE inside the worker…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34977">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-34163 – FastGPT is an AI Agent building platform. Prior to version 4.14.9.5, FastGPT's M...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34163</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34163</guid>
    <pubDate>Tue, 31 Mar 2026 15:16:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-34163</strong></p>
  <p>FastGPT is an AI Agent building platform. Prior to version 4.14.9.5, FastGPT's MCP (Model Context Protocol) tools endpoints (/api/core/app/mcpTools/getTools and /api/core/app/mcpTools/runTool) accept a user-supplied URL parameter and make server-side HTTP requests to it without validating whether the URL points to an internal/private network address. Although the application has a dedicated isInt…</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34163">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-22744 – In RedisFilterExpressionConverter of spring-ai-redis-store, when a user-controll...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-22744</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-22744</guid>
    <pubDate>Fri, 27 Mar 2026 06:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-22744</strong></p>
  <p>In RedisFilterExpressionConverter of spring-ai-redis-store, when a user-controlled string is passed as a filter value for a TAG field, stringValue() inserts the value directly into the @field:{VALUE} RediSearch TAG block without escaping characters.This issue affects Spring AI: from 1.0.0 before 1.0.5, from 1.1.0 before 1.1.4.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-74</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-22744">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-4860 – A security flaw has been discovered in 648540858 wvp-GB28181-pro up to 2.7.4. Th...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-4860</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-4860</guid>
    <pubDate>Thu, 26 Mar 2026 09:16:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-4860</strong></p>
  <p>A security flaw has been discovered in 648540858 wvp-GB28181-pro up to 2.7.4. This affects the function GenericFastJsonRedisSerializer of the file src/main/java/com/genersoft/iot/vmp/conf/redis/RedisTemplateConfig.java of the component API Endpoint. The manipulation results in deserialization. It is possible to launch the attack remotely. The exploit has been released to the public and may be use…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-4860">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-1648 – The Performance Monitor plugin for WordPress is vulnerable to Server-Side Reques...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-1648</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-1648</guid>
    <pubDate>Sat, 21 Mar 2026 04:16:54 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-1648</strong></p>
  <p>The Performance Monitor plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 1.0.6. This is due to insufficient validation of the 'url' parameter in the '/wp-json/performance-monitor/v1/curl_data' REST API endpoint. This makes it possible for unauthenticated attackers to make web requests to arbitrary locations, including internal services, via t…</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-1648">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-27574 – OneUptime is a solution for monitoring and managing online services. In versions...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-27574</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-27574</guid>
    <pubDate>Sat, 21 Feb 2026 11:15:57 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-27574</strong></p>
  <p>OneUptime is a solution for monitoring and managing online services. In versions 9.5.13 and below, custom JavaScript monitor feature uses Node.js's node:vm module (explicitly documented as not a security mechanism) to execute user-supplied code, allowing trivial sandbox escape via a well-known one-liner that grants full access to the underlying process. Because the probe runs with host networking…</p>
  <p><strong>CVSS:</strong> 9.9 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27574">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-23524 – Laravel Reverb provides a real-time WebSocket communication backend for Laravel ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-23524</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-23524</guid>
    <pubDate>Wed, 21 Jan 2026 22:15:50 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-23524</strong></p>
  <p>Laravel Reverb provides a real-time WebSocket communication backend for Laravel applications. In versions 1.6.3 and below, Reverb passes data from the Redis channel directly into PHP’s unserialize() function without restricting which classes can be instantiated, which leaves users vulnerable to Remote Code Execution. The exploitability of this vulnerability is increased because Redis servers are…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-23524">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-66360 – An issue was discovered in Logpoint before 7.7.0. An improperly configured acces...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-66360</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-66360</guid>
    <pubDate>Fri, 28 Nov 2025 00:15:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-66360</strong></p>
  <p>An issue was discovered in Logpoint before 7.7.0. An improperly configured access control policy exposes sensitive Logpoint internal service (Redis) information to li-admin users. This can lead to privilege escalation.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-66360">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-62507 – Redis is an open source, in-memory database that persists on disk. In versions 8...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-62507</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-62507</guid>
    <pubDate>Tue, 04 Nov 2025 22:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-62507</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. In versions 8.2.0 and above, a user can run the XACKDEL command with multiple ID's and trigger a stack buffer overflow, which may potentially lead to remote code execution. This issue is fixed in version 8.2.3. To workaround this issue without patching the redis-server executable is to prevent users from executing XACKDEL operatio…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-62507">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-59271 – Redis Enterprise Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59271</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59271</guid>
    <pubDate>Thu, 09 Oct 2025 21:15:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-59271</strong></p>
  <p>Redis Enterprise Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 8.7 · <strong>CWE:</strong> CWE-285</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59271">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-49844 – Redis is an open source, in-memory database that persists on disk. Versions 8.2...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-49844</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-49844</guid>
    <pubDate>Fri, 03 Oct 2025 20:15:32 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-49844</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. Versions 8.2.1 and below allow an authenticated user to use a specially crafted Lua script to manipulate the garbage collector, trigger a use-after-free and potentially lead to remote code execution. The problem exists in all versions of Redis with Lua scripting. This issue is fixed in version 8.2.2. To workaround this issue witho…</p>
  <p><strong>CVSS:</strong> 9.9 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49844">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-46817 – Redis is an open source, in-memory database that persists on disk. Versions 8.2...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-46817</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-46817</guid>
    <pubDate>Fri, 03 Oct 2025 18:15:35 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-46817</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. Versions 8.2.1 and below allow an authenticated user to use a specially crafted Lua script to cause an integer overflow and potentially lead to remote code execution The problem exists in all versions of Redis with Lua scripting. This issue is fixed in version 8.2.2.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-46817">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-34202 – Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to 25.2.169 an...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-34202</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-34202</guid>
    <pubDate>Fri, 19 Sep 2025 19:15:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-34202</strong></p>
  <p>Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to 25.2.169 and Application prior to 25.2.1518 (VA and SaaS deployments) expose Docker internal networks in a way that allows an attacker on the same external L2 segment — or an attacker able to add routes using the appliance as a gateway — to reach container IPs directly. This grants access to internal services (HTTP APIs, Redis,…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-291</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-34202">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-34201 – Vasion Print (formerly PrinterLogic) Virtual Appliance Host and Application (VA ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-34201</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-34201</guid>
    <pubDate>Fri, 19 Sep 2025 19:15:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-34201</strong></p>
  <p>Vasion Print (formerly PrinterLogic) Virtual Appliance Host and Application (VA and SaaS deployments) run many Docker containers on shared internal networks without firewalling or segmentation between instances. A compromise of any single container allows direct access to internal services (HTTP, Redis, MySQL, etc.) on the overlay network. From a compromised container, an attacker can reach and e…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-653</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-34201">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-9364 – An open database issue exists in the affected product and version. The security ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-9364</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-9364</guid>
    <pubDate>Tue, 09 Sep 2025 13:15:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-9364</strong></p>
  <p>An open database issue exists in the affected product and version. The security issue stems from an over permissive Redis instance. This could result in an attacker on the intranet accessing sensitive data and potential alteration of data.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-497</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-9364">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-54472 – Unlimited memory allocation in redis protocol parser in Apache bRPC (all version...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-54472</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-54472</guid>
    <pubDate>Thu, 14 Aug 2025 09:15:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-54472</strong></p>
  <p>Unlimited memory allocation in redis protocol parser in Apache bRPC (all versions < 1.14.1) on all platforms allows attackers to crash the service via network.    Root Cause: In the bRPC Redis protocol parser code, memory for arrays or strings of corresponding sizes is allocated based on the integers read from the network. If the integer read from the network is too large, it may cause a bad allo…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-54472">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-48367 – Redis is an open source, in-memory database that persists on disk. An unauthenti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-48367</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-48367</guid>
    <pubDate>Mon, 07 Jul 2025 16:15:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-48367</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. An unauthenticated connection can cause repeated IP protocol errors, leading to client starvation and, ultimately, a denial of service. This vulnerability is fixed in 8.0.3, 7.4.5, 7.2.10, and 6.2.19.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-48367">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-32023 – Redis is an open source, in-memory database that persists on disk. From 2.8 to b...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-32023</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-32023</guid>
    <pubDate>Mon, 07 Jul 2025 16:15:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-32023</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. From 2.8 to before 8.0.3, 7.4.5, 7.2.10, and 6.2.19, an authenticated user may use a specially crafted string to trigger a stack/heap out of bounds write on hyperloglog operations, potentially leading to remote code execution. The bug likely affects all Redis versions with hyperloglog operations implemented. This vulnerability is…</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-680</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-32023">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-52935 – Integer Overflow or Wraparound vulnerability in dragonflydb dragonfly (src/redis...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-52935</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-52935</guid>
    <pubDate>Mon, 23 Jun 2025 10:15:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-52935</strong></p>
  <p>Integer Overflow or Wraparound vulnerability in dragonflydb dragonfly (src/redis/lua/struct modules). This vulnerability is associated with program files lua_struct.C.  This issue affects dragonfly: 1.30.1, 1.30.0, 1.28.18.</p>
  <p><strong>CVSS:</strong> 9.4 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-52935">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-21605 – Redis is an open source, in-memory database that persists on disk. In versions s...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-21605</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-21605</guid>
    <pubDate>Wed, 23 Apr 2025 16:15:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-21605</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. In versions starting at 2.6 and prior to 7.4.3, An unauthenticated client can cause unlimited growth of output buffers, until the server runs out of memory or is killed. By default, the Redis configuration does not limit the output buffer of normal clients (see client-output-buffer-limit). Therefore, the output buffer can grow unl…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-21605">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-55656 – RedisBloom adds a set of probabilistic data structures to Redis. There is an int...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-55656</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-55656</guid>
    <pubDate>Wed, 08 Jan 2025 16:15:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-55656</strong></p>
  <p>RedisBloom adds a set of probabilistic data structures to Redis. There is an integer overflow vulnerability in RedisBloom, which is a module used in Redis. The integer overflow vulnerability allows an attacker (a redis client which knows the password) to allocate memory in the heap lesser than the required memory due to wraparound. Then read and write can be performed beyond this allocated memory…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-55656">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-51737 – RediSearch is a Redis module that provides querying, secondary indexing, and ful...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-51737</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-51737</guid>
    <pubDate>Wed, 08 Jan 2025 16:15:35 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-51737</strong></p>
  <p>RediSearch is a Redis module that provides querying, secondary indexing, and full-text search for Redis. An authenticated redis user executing FT.SEARCH or FT.AGGREGATE with a specially crafted LIMIT command argument, or FT.SEARCH with a specially crafted KNN command argument, can trigger an integer overflow, leading to heap overflow and potential remote code execution. This vulnerability is fixe…</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-51737">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-51480 – RedisTimeSeries is a time-series database (TSDB) module for Redis, by Redis. Exe...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-51480</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-51480</guid>
    <pubDate>Wed, 08 Jan 2025 16:15:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-51480</strong></p>
  <p>RedisTimeSeries is a time-series database (TSDB) module for Redis, by Redis. Executing one of these commands TS.QUERYINDEX, TS.MGET, TS.MRAGE, TS.MREVRANGE by an authenticated user, using specially crafted command arguments may cause an integer overflow, a subsequent heap overflow, and potentially lead to remote code execution. This vulnerability is fixed in 1.6.20, 1.8.15, 1.10.15, and 1.12.3.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-51480">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-46981 – Redis is an open source, in-memory database that persists on disk. An authentica...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-46981</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-46981</guid>
    <pubDate>Mon, 06 Jan 2025 22:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-46981</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. An authenticated user may use a specially crafted Lua script to manipulate the garbage collector and potentially lead to remote code execution. The problem is fixed in 7.4.2, 7.2.7, and 6.2.17. An additional workaround to mitigate the problem without patching the redis-server executable is to prevent users from executing Lua scrip…</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-46981">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-31449 – Redis is an open source, in-memory database that persists on disk. An authentica...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-31449</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-31449</guid>
    <pubDate>Mon, 07 Oct 2024 20:15:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-31449</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. An authenticated user may use a specially crafted Lua script to trigger a stack buffer overflow in the bit library, which may potentially lead to remote code execution. The problem exists in all versions of Redis with Lua scripting. This problem has been fixed in Redis versions 6.2.16, 7.2.6, and 7.4.1. Users are advised to upgrad…</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-31449">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-6121 – An out-of-date version of Redis shipped with NI SystemLink Server is susceptible...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-6121</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-6121</guid>
    <pubDate>Mon, 22 Jul 2024 20:15:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-6121</strong></p>
  <p>An out-of-date version of Redis shipped with NI SystemLink Server is susceptible to multiple vulnerabilities, including CVE-2022-24834.  This affects NI SystemLink Server 2024 Q1 and prior versions.  It also affects NI FlexLogger 2023 Q2 and prior versions which installed this shared service.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-6121">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-23998 – goanother Another Redis Desktop Manager =&lt;1.6.1 is vulnerable to Cross Site Scri...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-23998</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-23998</guid>
    <pubDate>Fri, 05 Jul 2024 16:15:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-23998</strong></p>
  <p>goanother Another Redis Desktop Manager =<1.6.1 is vulnerable to Cross Site Scripting (XSS) via src/components/Setting.vue.</p>
  <p><strong>CVSS:</strong> 9.6 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-23998">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-31989 – Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. It has...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-31989</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-31989</guid>
    <pubDate>Tue, 21 May 2024 19:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-31989</strong></p>
  <p>Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. It has been discovered that an unprivileged pod in a different namespace on the same cluster could connect to the Redis server on port 6379. Despite having installed the latest version of the VPC CNI plugin on the EKS cluster, it requires manual enablement through configuration to enforce network policies. This raises conce…</p>
  <p><strong>CVSS:</strong> 9.0 · <strong>CWE:</strong> CWE-327</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-31989">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-52775 – In the Linux kernel, the following vulnerability has been resolved:

net/smc: av...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-52775</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-52775</guid>
    <pubDate>Tue, 21 May 2024 16:15:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-52775</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  net/smc: avoid data corruption caused by decline  We found a data corruption issue during testing of SMC-R on Redis applications.  The benchmark has a low probability of reporting a strange error as shown below.  "Error: Protocol error, got "\xe2" as reply type byte"  Finally, we found that the retrieved error data was as follow…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-52775">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-32971 – Apollo Router is a configurable, graph router written in Rust to run a federated...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-32971</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-32971</guid>
    <pubDate>Thu, 02 May 2024 07:15:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-32971</strong></p>
  <p>Apollo Router is a configurable, graph router written in Rust to run a federated supergraph that uses Apollo Federation 2. The affected versions of Apollo Router contain a bug that in limited circumstances, could lead to unexpected operations being executed which can result in unintended data or effects. This only affects Router instances configured to use distributed query plan caching. The root…</p>
  <p><strong>CVSS:</strong> 9.0 · <strong>CWE:</strong> CWE-440</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-32971">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-3625 – A flaw was found in Quay, where Quay's database is stored in plain text in mirro...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-3625</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-3625</guid>
    <pubDate>Thu, 25 Apr 2024 18:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-3625</strong></p>
  <p>A flaw was found in Quay, where Quay's database is stored in plain text in mirror-registry on Jinja's config.yaml file. This issue leaves the possibility of a malicious actor with access to this file to gain access to Quay's Redis instance.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-256</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-3625">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-25115 – RedisBloom adds a set of probabilistic data structures to Redis. Starting in ver...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-25115</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-25115</guid>
    <pubDate>Tue, 09 Apr 2024 18:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-25115</strong></p>
  <p>RedisBloom adds a set of probabilistic data structures to Redis. Starting in version 2.0.0 and prior to version 2.4.7 and 2.6.10, specially crafted `CF.LOADCHUNK` commands may be used by authenticated users to perform heap overflow, which may lead to remote code execution. The problem is fixed in RedisBloom 2.4.7 and 2.6.10.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-25115">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-3019 – A flaw was found in PCP. The default pmproxy configuration exposes the Redis ser...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-3019</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-3019</guid>
    <pubDate>Thu, 28 Mar 2024 19:15:49 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-3019</strong></p>
  <p>A flaw was found in PCP. The default pmproxy configuration exposes the Redis server backend to the local network, allowing remote command execution with the privileges of the Redis user. This issue can only be exploited when pmproxy is running. By default, pmproxy is not running and needs to be started manually. The pmproxy service is usually started from the 'Metrics settings' page of the Cockpi…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-668</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-3019">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-27917 – Shopware is an open commerce platform based on Symfony Framework and Vue. The Sy...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-27917</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-27917</guid>
    <pubDate>Wed, 06 Mar 2024 20:15:48 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-27917</strong></p>
  <p>Shopware is an open commerce platform based on Symfony Framework and Vue. The Symfony Session Handler pops the Session Cookie and assigns it to the Response. Since Shopware 6.5.8.0, the 404 pages are cached to improve the performance of 404 pages. So the cached Response which contains a Session Cookie when the Browser accessing the 404 page, has no cookies yet. The Symfony Session Handler is in u…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-524</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-27917">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2023-31654 – Redis raft master-1b8bd86 to master-7b46079 was discovered to contain an ODR vio...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-31654</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-31654</guid>
    <pubDate>Tue, 23 Jan 2024 22:15:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2023-31654</strong></p>
  <p>Redis raft master-1b8bd86 to master-7b46079 was discovered to contain an ODR violation via the component hiredisAllocFns at /opt/fs/redisraft/deps/hiredis/alloc.c.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-31654">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-41056 – Redis is an in-memory database that persists on disk. Redis incorrectly handles ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-41056</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-41056</guid>
    <pubDate>Wed, 10 Jan 2024 16:15:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-41056</strong></p>
  <p>Redis is an in-memory database that persists on disk. Redis incorrectly handles resizing of memory buffers which can result in integer overflow that leads to heap overflow and potential remote code execution. This issue has been patched in version 7.0.15 and 7.2.4.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-41056">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-47120 – Discourse is an open source platform for community discussion. In versions 3.1.0...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-47120</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-47120</guid>
    <pubDate>Fri, 10 Nov 2023 16:15:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-47120</strong></p>
  <p>Discourse is an open source platform for community discussion. In versions 3.1.0 through 3.1.2 of the `stable` branch and versions 3.1.0,beta6 through 3.2.0.beta2 of the `beta` and `tests-passed` branches, Redis memory can be depleted by crafting a site with an abnormally long favicon URL and drafting multiple posts which Onebox it. The issue is patched in version 3.1.3 of the `stable` branch and…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-47120">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-47004 – Buffer Overflow vulnerability in Redis RedisGraph v.2.x through v.2.12.8 and fix...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-47004</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-47004</guid>
    <pubDate>Mon, 06 Nov 2023 22:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-47004</strong></p>
  <p>Buffer Overflow vulnerability in Redis RedisGraph v.2.x through v.2.12.8 and fixed in v.2.12.9 allows an attacker to execute arbitrary code via the code logic after valid authentication.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-47004">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2023-43119 – An Access Control issue discovered in Extreme Networks Switch Engine (EXOS) befo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-43119</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-43119</guid>
    <pubDate>Mon, 16 Oct 2023 20:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2023-43119</strong></p>
  <p>An Access Control issue discovered in Extreme Networks Switch Engine (EXOS) before 32.5.1.5, also fixed in 22.7, 31.7.2 allows attackers to gain escalated privileges using crafted telnet commands via Redis server.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-43119">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2023-42809 – Redisson is a Java Redis client that uses the Netty framework. Prior to version ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-42809</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-42809</guid>
    <pubDate>Wed, 04 Oct 2023 20:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2023-42809</strong></p>
  <p>Redisson is a Java Redis client that uses the Netty framework. Prior to version 3.22.0, some of the messages received from the Redis server contain Java objects that the client deserializes without further validation. Attackers that manage to trick clients into communicating with a malicious server can include especially crafted objects in its responses that, once deserialized by the client, forc…</p>
  <p><strong>CVSS:</strong> 9.6 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-42809">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-24834 – Redis is an in-memory database that persists on disk. A specially crafted Lua sc...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-24834</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-24834</guid>
    <pubDate>Thu, 13 Jul 2023 15:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-24834</strong></p>
  <p>Redis is an in-memory database that persists on disk. A specially crafted Lua script executing in Redis can trigger a heap overflow in the cjson library, and result with heap corruption and potentially remote code execution. The problem exists in all versions of Redis with Lua scripting support, starting from 2.6, and affects only authenticated and authorized users. The problem is fixed in versio…</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-24834">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-36824 – Redis is an in-memory database that persists on disk. In Redit 7.0 prior to 7.0...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-36824</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-36824</guid>
    <pubDate>Tue, 11 Jul 2023 17:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-36824</strong></p>
  <p>Redis is an in-memory database that persists on disk. In Redit 7.0 prior to 7.0.12, extracting key names from a command and a list of arguments may, in some cases, trigger a heap overflow and result in reading random heap memory, heap corruption and potentially remote code execution. Several scenarios that may lead to authenticated users executing a specially crafted `COMMAND GETKEYS` or `COMMAND…</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-36824">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-31655 – redis v7.0.10 was discovered to contain a segmentation violation. This vulnerabi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-31655</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-31655</guid>
    <pubDate>Thu, 18 May 2023 20:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-31655</strong></p>
  <p>redis v7.0.10 was discovered to contain a segmentation violation. This vulnerability allows attackers to cause a Denial of Service (DoS) via unspecified vectors.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-31655">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-41331 – A missing authentication for critical function vulnerability [CWE-306] in FortiP...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-41331</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-41331</guid>
    <pubDate>Tue, 11 Apr 2023 17:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-41331</strong></p>
  <p>A missing authentication for critical function vulnerability [CWE-306] in FortiPresence infrastructure server before version 1.2.1 allows a remote, unauthenticated attacker to access the Redis and MongoDB instances via crafted authentication requests.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-306</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-41331">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-39267 – Bifrost is a heterogeneous middleware that synchronizes MySQL, MariaDB to Redis,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-39267</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-39267</guid>
    <pubDate>Wed, 19 Oct 2022 13:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-39267</strong></p>
  <p>Bifrost is a heterogeneous middleware that synchronizes MySQL, MariaDB to Redis, MongoDB, ClickHouse, MySQL and other services for production environments. Versions prior to 1.8.8-release are subject to authentication bypass in the admin and monitor user groups by deleting the X-Requested-With: XMLHttpRequest field in the request header. This issue has been patched in 1.8.8-release. There are no…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-39267">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-35951 – Redis is an in-memory database that persists on disk. Versions 7.0.0 and above, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-35951</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-35951</guid>
    <pubDate>Fri, 23 Sep 2022 04:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-35951</strong></p>
  <p>Redis is an in-memory database that persists on disk. Versions 7.0.0 and above, prior to 7.0.5 are vulnerable to an Integer Overflow. Executing an `XAUTOCLAIM` command on a stream key in a specific state, with a specially crafted `COUNT` argument may cause an integer overflow, a subsequent heap overflow, and potentially lead to remote code execution. This has been patched in Redis version 7.0.5.…</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-35951">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-36076 – NodeBB Forum Software is powered by Node.js and supports either Redis, MongoDB, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-36076</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-36076</guid>
    <pubDate>Fri, 02 Sep 2022 13:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-36076</strong></p>
  <p>NodeBB Forum Software is powered by Node.js and supports either Redis, MongoDB, or a PostgreSQL database. Due to an unnecessarily strict conditional in the code handling the first step of the SSO process, the pre-existing logic that added (and later checked) a nonce was inadvertently rendered opt-in instead of opt-out. This re-exposed a vulnerability in that a specially crafted Man-in-the-Middle…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-36076">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-36045 – NodeBB Forum Software is powered by Node.js and supports either Redis, MongoDB, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-36045</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-36045</guid>
    <pubDate>Wed, 31 Aug 2022 15:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-36045</strong></p>
  <p>NodeBB Forum Software is powered by Node.js and supports either Redis, MongoDB, or a PostgreSQL database. It utilizes web sockets for instant interactions and real-time notifications. `utils.generateUUID`, a helper function available in essentially all versions of NodeBB (as far back as v1.0.1 and potentially earlier) used a cryptographically insecure Pseudo-random number generator (`Math.random(…</p>
  <p><strong>CVSS:</strong> 9.0 · <strong>CWE:</strong> CWE-330</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-36045">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-31144 – Redis is an in-memory database that persists on disk. A specially crafted `XAUTO...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-31144</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-31144</guid>
    <pubDate>Tue, 19 Jul 2022 21:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-31144</strong></p>
  <p>Redis is an in-memory database that persists on disk. A specially crafted `XAUTOCLAIM` command on a stream key in a specific state may result with heap overflow, and potentially remote code execution. This problem affects versions on the 7.x branch prior to 7.0.4. The patch is released in version 7.0.4.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-31144">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-33105 – Redis v7.0 was discovered to contain a memory leak via the component streamGetEd...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-33105</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-33105</guid>
    <pubDate>Thu, 23 Jun 2022 17:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-33105</strong></p>
  <p>Redis v7.0 was discovered to contain a memory leak via the component streamGetEdgeID.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-401</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-33105">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-0543 – It was discovered, that redis, a persistent key-value database, due to a packagi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-0543</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-0543</guid>
    <pubDate>Fri, 18 Feb 2022 20:15:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-0543</strong></p>
  <p>It was discovered, that redis, a persistent key-value database, due to a packaging issue, is prone to a (Debian-specific) Lua sandbox escape, which could result in remote code execution.</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-862</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-0543">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-32765 – Hiredis is a minimalistic C client library for the Redis database. In affected v...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-32765</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-32765</guid>
    <pubDate>Mon, 04 Oct 2021 21:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-32765</strong></p>
  <p>Hiredis is a minimalistic C client library for the Redis database. In affected versions Hiredis is vulnurable to integer overflow if provided maliciously crafted or corrupted `RESP` `mult-bulk` protocol data. When parsing `multi-bulk` (array-like) replies, hiredis fails to check if `count * sizeof(redisReply*)` can be represented in `SIZE_MAX`. If it can not, and the `calloc()` call doesn't itsel…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-32765">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-41099 – Redis is an open source, in-memory database that persists on disk. An integer ov...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-41099</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-41099</guid>
    <pubDate>Mon, 04 Oct 2021 18:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-41099</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. An integer overflow bug in the underlying string library can be used to corrupt the heap and potentially result with denial of service or remote code execution. The vulnerability involves changing the default proto-max-bulk-len configuration parameter to a very large value and constructing specially crafted network payloads or com…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-41099">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-32762 – Redis is an open source, in-memory database that persists on disk. The redis-cli...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-32762</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-32762</guid>
    <pubDate>Mon, 04 Oct 2021 18:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-32762</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. The redis-cli command line tool and redis-sentinel service may be vulnerable to integer overflow when parsing specially crafted large multi-bulk network replies. This is a result of a vulnerability in the underlying hiredis library which does not perform an overflow check before calling the calloc() heap allocation function. This…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-32762">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-32687 – Redis is an open source, in-memory database that persists on disk. An integer ov...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-32687</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-32687</guid>
    <pubDate>Mon, 04 Oct 2021 18:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-32687</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. An integer overflow bug affecting all versions of Redis can be exploited to corrupt the heap and potentially be used to leak arbitrary contents of the heap or trigger remote code execution. The vulnerability involves changing the default set-max-intset-entries configuration parameter to a very large value and constructing speciall…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-32687">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-32675 – Redis is an open source, in-memory database that persists on disk. When parsing ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-32675</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-32675</guid>
    <pubDate>Mon, 04 Oct 2021 18:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-32675</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. When parsing an incoming Redis Standard Protocol (RESP) request, Redis allocates memory according to user-specified values which determine the number of elements (in the multi-bulk header) and size of each element (in the bulk header). An attacker delivering specially crafted requests over multiple connections can cause the server…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-32675">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-32628 – Redis is an open source, in-memory database that persists on disk. An integer ov...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-32628</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-32628</guid>
    <pubDate>Mon, 04 Oct 2021 18:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-32628</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. An integer overflow bug in the ziplist data structure used by all versions of Redis can be exploited to corrupt the heap and potentially result with remote code execution. The vulnerability involves modifying the default ziplist configuration parameters (hash-max-ziplist-entries, hash-max-ziplist-value, zset-max-ziplist-entries or…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-32628">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-32627 – Redis is an open source, in-memory database that persists on disk. In affected v...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-32627</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-32627</guid>
    <pubDate>Mon, 04 Oct 2021 18:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-32627</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. In affected versions an integer overflow bug in Redis can be exploited to corrupt the heap and potentially result with remote code execution. The vulnerability involves changing the default proto-max-bulk-len and client-query-buffer-limit configuration parameters to very large values and constructing specially crafted very large s…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-32627">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-32626 – Redis is an open source, in-memory database that persists on disk. In affected v...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-32626</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-32626</guid>
    <pubDate>Mon, 04 Oct 2021 18:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-32626</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. In affected versions specially crafted Lua scripts executing in Redis can cause the heap-based Lua stack to be overflowed, due to incomplete checks for this condition. This can result with heap corruption and potentially remote code execution. This problem exists in all versions of Redis with Lua scripting support, starting from 2…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-32626">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-21468 – A segmentation fault in the redis-server component of Redis 5.0.7 leads to a den...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-21468</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-21468</guid>
    <pubDate>Mon, 20 Sep 2021 16:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-21468</strong></p>
  <p>A segmentation fault in the redis-server component of Redis 5.0.7 leads to a denial of service (DOS). NOTE: the vendor cannot reproduce this issue in a released version, such as 5.0.7</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-21468">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-36043 – Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-36043</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-36043</guid>
    <pubDate>Wed, 01 Sep 2021 15:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-36043</strong></p>
  <p>Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by a blind SSRF vulnerability in the bundled dotmailer extension. An attacker with admin privileges could abuse this to achieve remote code execution should Redis be enabled.</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-36043">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-32761 – Redis is an in-memory database that persists on disk. A vulnerability involving ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-32761</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-32761</guid>
    <pubDate>Wed, 21 Jul 2021 21:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-32761</strong></p>
  <p>Redis is an in-memory database that persists on disk. A vulnerability involving out-of-bounds read and integer overflow to buffer overflow exists starting with version 2.2 and prior to versions 5.0.13, 6.0.15, and 6.2.5. On 32-bit systems, Redis `*BIT*` command are vulnerable to integer overflow that can potentially be exploited to corrupt the heap, leak arbitrary heap contents or trigger remote…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-32761">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-32743 – Icinga is a monitoring system which checks the availability of network resources...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-32743</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-32743</guid>
    <pubDate>Thu, 15 Jul 2021 16:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-32743</strong></p>
  <p>Icinga is a monitoring system which checks the availability of network resources, notifies users of outages, and generates performance data for reporting. In versions prior to 2.11.10 and from version 2.12.0 through version 2.12.4, some of the Icinga 2 features that require credentials for external services expose those credentials through the API to authenticated API users with read permissions…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-202</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-32743">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-31649 – In applications using jfinal 4.9.08 and below, there is a deserialization vulner...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-31649</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-31649</guid>
    <pubDate>Thu, 24 Jun 2021 16:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-31649</strong></p>
  <p>In applications using jfinal 4.9.08 and below, there is a deserialization vulnerability when using redis,may be vulnerable to remote code execute</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-31649">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-32625 – Redis is an open source (BSD licensed), in-memory data structure store, used as ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-32625</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-32625</guid>
    <pubDate>Wed, 02 Jun 2021 20:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-32625</strong></p>
  <p>Redis is an open source (BSD licensed), in-memory data structure store, used as a database, cache, and message broker. An integer overflow bug in Redis version 6.0 or newer, could be exploited using the STRALGO LCS command to corrupt the heap and potentially result with remote code execution. This is a result of an incomplete fix by CVE-2021-29477. The problem is fixed in version 6.2.4 and 6.0.14…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-680</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-32625">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-4670 – IBM Planning Analytics Local 2.0 connects to a Redis server. The Redis server, a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-4670</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-4670</guid>
    <pubDate>Mon, 17 May 2021 17:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-4670</strong></p>
  <p>IBM Planning Analytics Local 2.0 connects to a Redis server. The Redis server, an in-memory data structure store, running on the remote host is not protected by password authentication. A remote attacker can exploit this to gain unauthorized access to the server. IBM X-Force ID: 186401.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-306</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-4670">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-33026 – The Flask-Caching extension through 1.10.1 for Flask relies on Pickle for serial...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-33026</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-33026</guid>
    <pubDate>Thu, 13 May 2021 23:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-33026</strong></p>
  <p>The Flask-Caching extension through 1.10.1 for Flask relies on Pickle for serialization, which may lead to remote code execution or local privilege escalation. If an attacker gains access to cache storage (e.g., filesystem, Memcached, Redis, etc.), they can construct a crafted payload, poison the cache, and execute Python code. NOTE: a third party indicates that exploitation is extremely unlikely…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-33026">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-29478 – Redis is an open source (BSD licensed), in-memory data structure store, used as ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-29478</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-29478</guid>
    <pubDate>Tue, 04 May 2021 16:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-29478</strong></p>
  <p>Redis is an open source (BSD licensed), in-memory data structure store, used as a database, cache, and message broker. An integer overflow bug in Redis 6.2 before 6.2.3 could be exploited to corrupt the heap and potentially result with remote code execution. Redis 6.0 and earlier are not directly affected by this issue. The problem is fixed in version 6.2.3. An additional workaround to mitigate t…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-29478">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-29477 – Redis is an open source (BSD licensed), in-memory data structure store, used as ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-29477</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-29477</guid>
    <pubDate>Tue, 04 May 2021 16:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-29477</strong></p>
  <p>Redis is an open source (BSD licensed), in-memory data structure store, used as a database, cache, and message broker. An integer overflow bug in Redis version 6.0 or newer could be exploited using the `STRALGO LCS` command to corrupt the heap and potentially result with remote code execution. The problem is fixed in version 6.2.3 and 6.0.13. An additional workaround to mitigate the problem witho…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-29477">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-11982 – An issue was found in Apache Airflow versions 1.10.10 and below. When using Cele...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-11982</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-11982</guid>
    <pubDate>Fri, 17 Jul 2020 00:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-11982</strong></p>
  <p>An issue was found in Apache Airflow versions 1.10.10 and below. When using CeleryExecutor, if an attack can connect to the broker (Redis, RabbitMQ) directly, it was possible to insert a malicious payload directly to the broker which could lead to a deserialization attack (and thus remote code execution) on the Worker.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-11982">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-11981 – An issue was found in Apache Airflow versions 1.10.10 and below. When using Cele...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-11981</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-11981</guid>
    <pubDate>Fri, 17 Jul 2020 00:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-11981</strong></p>
  <p>An issue was found in Apache Airflow versions 1.10.10 and below. When using CeleryExecutor, if an attacker can connect to the broker (Redis, RabbitMQ) directly, it is possible to inject commands, resulting in the celery worker running arbitrary commands.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-11981">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-14147 – An integer overflow in the getnum function in lua_struct.c in Redis before 6.0.3...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-14147</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-14147</guid>
    <pubDate>Mon, 15 Jun 2020 18:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-14147</strong></p>
  <p>An integer overflow in the getnum function in lua_struct.c in Redis before 6.0.3 allows context-dependent attackers with permission to run Lua code in a Redis session to cause a denial of service (memory corruption and application crash) or possibly bypass intended sandbox restrictions via a large number, which triggers a stack-based buffer overflow. NOTE: this issue exists because of a CVE-2015-…</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-14147">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2019-17206 – Uncontrolled deserialization of a pickled object in models.py in Frost Ming redi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-17206</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-17206</guid>
    <pubDate>Sat, 05 Oct 2019 23:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2019-17206</strong></p>
  <p>Uncontrolled deserialization of a pickled object in models.py in Frost Ming rediswrapper (aka Redis Wrapper) before 0.3.0 allows attackers to execute arbitrary scripts.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-17206">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-10193 – A stack-buffer overflow vulnerability was found in the Redis hyperloglog data st...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-10193</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-10193</guid>
    <pubDate>Thu, 11 Jul 2019 19:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-10193</strong></p>
  <p>A stack-buffer overflow vulnerability was found in the Redis hyperloglog data structure versions 3.x before 3.2.13, 4.x before 4.0.14 and 5.x before 5.0.4. By corrupting a hyperloglog using the SETRANGE command, an attacker could cause Redis to perform controlled increments of up to 12 bytes past the end of a stack-allocated buffer.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-121</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-10193">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-10192 – A heap-buffer overflow vulnerability was found in the Redis hyperloglog data str...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-10192</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-10192</guid>
    <pubDate>Thu, 11 Jul 2019 19:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-10192</strong></p>
  <p>A heap-buffer overflow vulnerability was found in the Redis hyperloglog data structure versions 3.x before 3.2.13, 4.x before 4.0.14 and 5.x before 5.0.4. By carefully corrupting a hyperloglog using the SETRANGE command, an attacker could trick Redis interpretation of dense HLL encoding to write up to 3 bytes beyond the end of a heap-allocated buffer.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-10192">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-0181 – A vulnerability in the Redis implementation used by the Cisco Policy Suite for M...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-0181</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-0181</guid>
    <pubDate>Thu, 10 Jan 2019 00:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-0181</strong></p>
  <p>A vulnerability in the Redis implementation used by the Cisco Policy Suite for Mobile and Cisco Policy Suite Diameter Routing Agent software could allow an unauthenticated, remote attacker to modify key-value pairs for short-lived events stored by the Redis server. The vulnerability is due to improper authentication when accessing the Redis server. An unauthenticated attacker could exploit this v…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-306</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-0181">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2018-11219 – An Integer Overflow issue was discovered in the struct library in the Lua subsys...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-11219</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-11219</guid>
    <pubDate>Sun, 17 Jun 2018 17:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2018-11219</strong></p>
  <p>An Integer Overflow issue was discovered in the struct library in the Lua subsystem in Redis before 3.2.12, 4.x before 4.0.10, and 5.x before 5.0 RC2, leading to a failure of bounds checking.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-11219">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2018-11218 – Memory Corruption was discovered in the cmsgpack library in the Lua subsystem in...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-11218</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-11218</guid>
    <pubDate>Sun, 17 Jun 2018 17:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2018-11218</strong></p>
  <p>Memory Corruption was discovered in the cmsgpack library in the Lua subsystem in Redis before 3.2.12, 4.x before 4.0.10, and 5.x before 5.0 RC2 because of stack-based buffer overflows.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-11218">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-12326 – Buffer overflow in redis-cli of Redis before 4.0.10 and 5.x before 5.0 RC3 allow...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-12326</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-12326</guid>
    <pubDate>Sun, 17 Jun 2018 14:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-12326</strong></p>
  <p>Buffer overflow in redis-cli of Redis before 4.0.10 and 5.x before 5.0 RC3 allows an attacker to achieve code execution and escalate to higher privileges via a crafted command line. NOTE: It is unclear whether there are any common situations in which redis-cli is used with, for example, a -h (aka hostname) argument from an untrusted source.</p>
  <p><strong>CVSS:</strong> 8.4 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-12326">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-12453 – Type confusion in the xgroupCommand function in t_stream.c in redis-server in Re...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-12453</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-12453</guid>
    <pubDate>Sat, 16 Jun 2018 17:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-12453</strong></p>
  <p>Type confusion in the xgroupCommand function in t_stream.c in redis-server in Redis before 5.0 allows remote attackers to cause denial-of-service via an XGROUP command in which the key is not a stream.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-704</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-12453">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-10672 – cloudpub-redis is a module for CloudPub: Redis Backend cloudpub-redis downloads ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-10672</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-10672</guid>
    <pubDate>Mon, 04 Jun 2018 16:29:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-10672</strong></p>
  <p>cloudpub-redis is a module for CloudPub: Redis Backend cloudpub-redis downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapping out the requested resources with an attacker controlled copy if the attacker is on the network or positioned in between the user and the remote server.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-311</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-10672">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-10639 – redis-srvr is a npm wrapper for redis-server. redis-srvr downloads binary resour...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-10639</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-10639</guid>
    <pubDate>Mon, 04 Jun 2018 16:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-10639</strong></p>
  <p>redis-srvr is a npm wrapper for redis-server. redis-srvr downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapping out the requested binary with an attacker controlled binary if the attacker is on the network or positioned in between the user and the remote server.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-311</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-10639">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2018-8073 – Yii 2.x before 2.0.15 allows remote attackers to execute arbitrary LUA code via ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-8073</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-8073</guid>
    <pubDate>Wed, 21 Mar 2018 18:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2018-8073</strong></p>
  <p>Yii 2.x before 2.0.15 allows remote attackers to execute arbitrary LUA code via a variant of the CVE-2018-7269 attack in conjunction with the Redis extension.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-8073">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2017-1000248 – Redis-store &lt;=v1.3.0 allows unsafe objects to be loaded from redis</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-1000248</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-1000248</guid>
    <pubDate>Fri, 17 Nov 2017 04:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2017-1000248</strong></p>
  <p>Redis-store <=v1.3.0 allows unsafe objects to be loaded from redis</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-1000248">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-10517 – networking.c in Redis before 3.2.7 allows "Cross Protocol Scripting" because it ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-10517</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-10517</guid>
    <pubDate>Tue, 24 Oct 2017 18:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-10517</strong></p>
  <p>networking.c in Redis before 3.2.7 allows "Cross Protocol Scripting" because it lacks a check for POST and Host: strings, which are not valid in the Redis protocol (but commonly occur when an attack triggers an HTTP request to the Redis TCP port).</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-254</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-10517">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2017-15047 – The clusterLoadConfig function in cluster.c in Redis 4.0.2 allows attackers to c...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-15047</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-15047</guid>
    <pubDate>Fri, 06 Oct 2017 04:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2017-15047</strong></p>
  <p>The clusterLoadConfig function in cluster.c in Redis 4.0.2 allows attackers to cause a denial of service (out-of-bounds array index and application crash) or possibly have unspecified other impact by leveraging "limited access to the machine."</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-15047">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-5169 – An issue was discovered in Hanwha Techwin Smart Security Manager Versions 1.5 an...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-5169</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-5169</guid>
    <pubDate>Mon, 13 Feb 2017 21:59:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-5169</strong></p>
  <p>An issue was discovered in Hanwha Techwin Smart Security Manager Versions 1.5 and prior. Multiple Cross Site Request Forgery vulnerabilities have been identified. The flaws exist within the Redis and Apache Felix Gogo servers that are installed as part of this product. By issuing specific HTTP Post requests, an attacker can gain system level access to a remote shell session. Smart Security Manage…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-5169">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
