<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Redis</title>
  <link>https://cvedaily.com/pages/tags/redis.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/redis.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Redis</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:33 +0000</lastBuildDate>
  <item>
    <title>[Medium] CVE-2026-45679 – OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the Op...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-45679</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-45679</guid>
    <pubDate>Tue, 02 Jun 2026 16:16:42 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-45679</strong></p>
  <p>OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. Prior to version 0.9.0, OBI exports raw Redis error text as the span status message. Because Redis error replies can contain attacker-controlled or sensitive values, this behavior can exfiltrate tokens, PII, or other confidential input into telemetry backends and inject untrusted text into downst…</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-117</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-45679">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-46424 – Budibase is an open-source low-code platform. Prior to 3.38.2, the public API ro...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-46424</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-46424</guid>
    <pubDate>Wed, 27 May 2026 18:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-46424</strong></p>
  <p>Budibase is an open-source low-code platform. Prior to 3.38.2, the public API role unassignment endpoint (POST /api/public/v1/roles/unassign) updates user documents in CouchDB but does not invalidate the corresponding Redis user cache entries. Because the authentication middleware resolves user identity and permissions from this cache (TTL: 3600 seconds), a user whose admin, builder, or app-level…</p>
  <p><strong>CVSS:</strong> 4.2 · <strong>CWE:</strong> CWE-269</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-46424">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-11399 – Files or directories accessible to external parties vulnerability in redis-serve...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-11399</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-11399</guid>
    <pubDate>Wed, 27 May 2026 09:16:25 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-11399</strong></p>
  <p>Files or directories accessible to external parties vulnerability in redis-server component in Synology BeeDrive for desktop before 1.3.2-13814 allows local users to conduct denial-of-service attacks via unspecified vectors.</p>
  <p><strong>CVSS:</strong> 6.8 · <strong>CWE:</strong> CWE-552</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-11399">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2026-48847 – Roundcube Webmail 1.6.x before 1.6.16, and 1.7.x before 1.7.1 allows pre-authent...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-48847</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-48847</guid>
    <pubDate>Mon, 25 May 2026 20:16:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2026-48847</strong></p>
  <p>Roundcube Webmail 1.6.x before 1.6.16, and 1.7.x before 1.7.1 allows pre-authentication arbitrary file deletion via redis/memcache session poisoning bypass.</p>
  <p><strong>CVSS:</strong> 3.7 · <strong>CWE:</strong> CWE-669</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-48847">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-48172 – LiteSpeed User-End cPanel Plugin before 2.4.5 allows privilege escalation (possi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-48172</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-48172</guid>
    <pubDate>Thu, 21 May 2026 02:16:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-48172</strong></p>
  <p>LiteSpeed User-End cPanel Plugin before 2.4.5 allows privilege escalation (possibly to root), as exploited in the wild in May 2026. Detection is best done via a command line of grep -rE "cpanel_jsonapi_func=redisAble" /var/cpanel/logs /usr/local/cpanel/logs/ 2>/dev/null in Bash. If you get no output, you have not been hit with exploitation of the vulnerability. If there is output, we recommend yo…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-48172">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-33233 – AutoGPT is a workflow automation platform for creating, deploying, and managing ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33233</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33233</guid>
    <pubDate>Tue, 19 May 2026 02:16:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-33233</strong></p>
  <p>AutoGPT is a workflow automation platform for creating, deploying, and managing continuous artificial intelligence agents. In versions 0.6.34 through 0.6.51, the backend deserializes Redis cache bytes using pickle.loads without integrity/authenticity checks. The write path serializes values with pickle.dumps(...) into Redis and the read path blindly invokes pickle.loads(...) on bytes with no HMAC…</p>
  <p><strong>CVSS:</strong> 7.6 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33233">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-44552 – Open WebUI is a self-hosted artificial intelligence platform designed to operate...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-44552</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-44552</guid>
    <pubDate>Fri, 15 May 2026 20:16:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-44552</strong></p>
  <p>Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.0, the tool_servers and terminal_servers keys in utils/tools.py do use a prefix. When two or more Open WebUI instances share a Redis database (a supported and documented deployment pattern, e.g., for multi-region deployments, blue-green setups, or cluster topologies), the unprefixed key…</p>
  <p><strong>CVSS:</strong> 8.7 · <strong>CWE:</strong> CWE-668</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-44552">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-42586 – Netty is an asynchronous, event-driven network application framework. Prior to 4...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-42586</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-42586</guid>
    <pubDate>Wed, 13 May 2026 19:17:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-42586</strong></p>
  <p>Netty is an asynchronous, event-driven network application framework. Prior to 4.2.13.Final and 4.1.133.Final, the Netty Redis codec encoder (RedisEncoder) writes user-controlled string content directly to the network output buffer without validating or sanitizing CRLF (\r\n) characters. Since the Redis Serialization Protocol (RESP) uses CRLF as the command/response delimiter, an attacker who can…</p>
  <p><strong>CVSS:</strong> 6.8 · <strong>CWE:</strong> CWE-93</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42586">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-42865 – Inbox Zero is an AI personal assistant for email. Prior to 2.29.3, the cleaner e...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-42865</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-42865</guid>
    <pubDate>Mon, 11 May 2026 18:16:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-42865</strong></p>
  <p>Inbox Zero is an AI personal assistant for email. Prior to 2.29.3, the cleaner email stream endpoint used a shared Redis subscription listener, which could deliver thread events for one authenticated account to another authenticated account using the cleaner feature at the same time. This vulnerability is fixed in 2.29.3.</p>
  <p><strong>CVSS:</strong> 4.3 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42865">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-25589 – RedisBloom is a probabilistic data structures module for Redis. In all versions ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-25589</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-25589</guid>
    <pubDate>Tue, 05 May 2026 17:17:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-25589</strong></p>
  <p>RedisBloom is a probabilistic data structures module for Redis. In all versions of RedisBloom before 2.8.20, the module does not properly validate serialized values processed through the Redis RESTORE command. An authenticated attacker with permission to execute RESTORE on a server with the RedisBloom module loaded can supply a crafted serialized payload that triggers invalid memory access and ma…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25589">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-25588 – RedisTimeSeries is a time-series module for Redis. In all versions before 1.12.1...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-25588</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-25588</guid>
    <pubDate>Tue, 05 May 2026 17:17:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-25588</strong></p>
  <p>RedisTimeSeries is a time-series module for Redis. In all versions before 1.12.14 of RedisTimeSeries, the module does not properly validate serialized values processed through the Redis RESTORE command. An authenticated attacker with permission to execute RESTORE on a server with the RedisTimeSeries module loaded can supply a crafted serialized payload that triggers invalid memory access and may…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25588">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-25243 – Redis is an in-memory data structure store. In versions of redis-server up to 8...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-25243</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-25243</guid>
    <pubDate>Tue, 05 May 2026 17:17:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-25243</strong></p>
  <p>Redis is an in-memory data structure store. In versions of redis-server up to 8.6.3, the RESTORE command does not properly validate serialized values. An authenticated attacker with permission to execute RESTORE can supply a crafted serialized payload that triggers invalid memory access and may lead to remote code execution. A workaround is to restrict access to the RESTORE command with ACL rules…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25243">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-23631 – Redis is an in-memory data structure store. In all versions of redis-server with...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-23631</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-23631</guid>
    <pubDate>Tue, 05 May 2026 17:17:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-23631</strong></p>
  <p>Redis is an in-memory data structure store. In all versions of redis-server with Lua scripting, an authenticated attacker can exploit the master-replica synchronization mechanism to trigger a use-after-free on replicas where replica-read-only is disabled or can be disabled, which may lead to remote code execution. A workaround is to prevent users from executing Lua scripts or avoid using replicas…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-23631">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-23479 – Redis is an in-memory data structure store. In redis-server from 7.2.0 until 8.6...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-23479</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-23479</guid>
    <pubDate>Tue, 05 May 2026 17:17:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-23479</strong></p>
  <p>Redis is an in-memory data structure store. In redis-server from 7.2.0 until 8.6.3, the unblock client flow does not handle an error return from `processCommandAndResetClient` when re-executing a blocked command. If a blocked client is evicted during this flow, an authenticated attacker can trigger a use-after-free that may lead to remote code execution. This has been patched in version 8.6.3.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-23479">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-42088 – OpenC3 COSMOS provides the functionality needed to send commands to and receive ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-42088</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-42088</guid>
    <pubDate>Mon, 04 May 2026 18:16:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-42088</strong></p>
  <p>OpenC3 COSMOS provides the functionality needed to send commands to and receive data from one or more embedded systems. Prior to version 7.0.0-rc3, the Script Runner widget allows users to execute Python and Ruby scripts directly from the openc3-COSMOS-script-runner-api container. Because all the docker containers share a network, users can execute specially crafted scripts to bypass the API perm…</p>
  <p><strong>CVSS:</strong> 9.6 · <strong>CWE:</strong> CWE-250</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42088">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-42472 – Unsafe deserialization vulnerability in MixPHP Framework 2.x thru 2.2.17. The se...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-42472</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-42472</guid>
    <pubDate>Fri, 01 May 2026 16:16:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-42472</strong></p>
  <p>Unsafe deserialization vulnerability in MixPHP Framework 2.x thru 2.2.17. The session and cache handlers use unserialize() on data from Redis in the RedisHandler object.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-42472">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-40872 – mailcow: dockerized is an open source groupware/email suite based on docker. In ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-40872</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-40872</guid>
    <pubDate>Tue, 21 Apr 2026 20:17:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-40872</strong></p>
  <p>mailcow: dockerized is an open source groupware/email suite based on docker. In versions prior to 2026-03b, the admin dashboard's Autodiscover logs render the EMailAddress value (logged as the "user" field) without HTML escaping. By submitting an unauthenticated Autodiscover request with a crafted EMailAddress containing HTML/JS, the payload is stored in Redis and executed when an admin views the…</p>
  <p><strong>CVSS:</strong> 9.3 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40872">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-25883 – Vexa is an open-source, self-hostable meeting bot API and meeting transcription ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-25883</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-25883</guid>
    <pubDate>Mon, 20 Apr 2026 16:16:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-25883</strong></p>
  <p>Vexa is an open-source, self-hostable meeting bot API and meeting transcription API. Prior to 0.10.0-260419-1910, the Vexa webhook feature allows authenticated users to configure an arbitrary URL that receives HTTP POST requests when meetings complete. The application performs no validation on the webhook URL, enabling Server-Side Request Forgery (SSRF). An authenticated attacker can set their we…</p>
  <p><strong>CVSS:</strong> 5.8 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-25883">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-35172 – Distribution is a toolkit to pack, ship, store, and deliver container content. P...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-35172</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-35172</guid>
    <pubDate>Mon, 06 Apr 2026 20:16:25 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-35172</strong></p>
  <p>Distribution is a toolkit to pack, ship, store, and deliver container content. Prior to 3.1.0, distribution can restore read access in repo a after an explicit delete when storage.cache.blobdescriptor: redis and storage.delete.enabled: true are both enabled. The delete path clears the shared digest descriptor but leaves stale repo-scoped membership behind, so a later Stat or Get from repo b repop…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-35172">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-35052 – D-Tale is the combination of a Flask back-end and a React front-end to view &amp; an...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-35052</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-35052</guid>
    <pubDate>Mon, 06 Apr 2026 18:16:42 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-35052</strong></p>
  <p>D-Tale is the combination of a Flask back-end and a React front-end to view & analyze Pandas data structures. Prior to 3.22.0, users hosting D-Tale publicly while using a redis or shelf storage layer could be vulnerable to remote code execution allowing attackers to run malicious code on the server. This vulnerability is fixed in 3.22.0.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-35052">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-34977 – Aperi'Solve is an open-source steganalysis web platform. Prior to 3.2.1, when up...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34977</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34977</guid>
    <pubDate>Mon, 06 Apr 2026 17:17:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-34977</strong></p>
  <p>Aperi'Solve is an open-source steganalysis web platform. Prior to 3.2.1, when uploading a JPEG, a user can specify an optional password to accompany the JPEG. This password is then directly passed into an expect command, which is then subsequently passed into a bash -c command, without any form of sanitization or validation. An unauthenticated attacker can achieve root-level RCE inside the worker…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34977">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2026-35537 – An issue was discovered in Roundcube Webmail before 1.5.14 and 1.6.14. Unsafe de...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-35537</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-35537</guid>
    <pubDate>Fri, 03 Apr 2026 04:17:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2026-35537</strong></p>
  <p>An issue was discovered in Roundcube Webmail before 1.5.14 and 1.6.14. Unsafe deserialization in the redis/memcache session handler may lead to arbitrary file write operations by unauthenticated attackers via crafted session data.</p>
  <p><strong>CVSS:</strong> 3.7 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-35537">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-34163 – FastGPT is an AI Agent building platform. Prior to version 4.14.9.5, FastGPT's M...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-34163</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-34163</guid>
    <pubDate>Tue, 31 Mar 2026 15:16:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-34163</strong></p>
  <p>FastGPT is an AI Agent building platform. Prior to version 4.14.9.5, FastGPT's MCP (Model Context Protocol) tools endpoints (/api/core/app/mcpTools/getTools and /api/core/app/mcpTools/runTool) accept a user-supplied URL parameter and make server-side HTTP requests to it without validating whether the URL points to an internal/private network address. Although the application has a dedicated isInt…</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-34163">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-22744 – In RedisFilterExpressionConverter of spring-ai-redis-store, when a user-controll...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-22744</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-22744</guid>
    <pubDate>Fri, 27 Mar 2026 06:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-22744</strong></p>
  <p>In RedisFilterExpressionConverter of spring-ai-redis-store, when a user-controlled string is passed as a filter value for a TAG field, stringValue() inserts the value directly into the @field:{VALUE} RediSearch TAG block without escaping characters.This issue affects Spring AI: from 1.0.0 before 1.0.5, from 1.1.0 before 1.1.4.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-74</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-22744">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-4860 – A security flaw has been discovered in 648540858 wvp-GB28181-pro up to 2.7.4. Th...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-4860</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-4860</guid>
    <pubDate>Thu, 26 Mar 2026 09:16:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-4860</strong></p>
  <p>A security flaw has been discovered in 648540858 wvp-GB28181-pro up to 2.7.4. This affects the function GenericFastJsonRedisSerializer of the file src/main/java/com/genersoft/iot/vmp/conf/redis/RedisTemplateConfig.java of the component API Endpoint. The manipulation results in deserialization. It is possible to launch the attack remotely. The exploit has been released to the public and may be use…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-4860">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-1648 – The Performance Monitor plugin for WordPress is vulnerable to Server-Side Reques...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-1648</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-1648</guid>
    <pubDate>Sat, 21 Mar 2026 04:16:54 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-1648</strong></p>
  <p>The Performance Monitor plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 1.0.6. This is due to insufficient validation of the 'url' parameter in the '/wp-json/performance-monitor/v1/curl_data' REST API endpoint. This makes it possible for unauthenticated attackers to make web requests to arbitrary locations, including internal services, via t…</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-1648">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-1527 – ImpactWhen an application passes user-controlled input to the upgrade option of ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-1527</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-1527</guid>
    <pubDate>Thu, 12 Mar 2026 21:16:25 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-1527</strong></p>
  <p>ImpactWhen an application passes user-controlled input to the upgrade option of client.request(), an attacker can inject CRLF sequences (\r\n) to:    *  Inject arbitrary HTTP headers   *  Terminate the HTTP request prematurely and smuggle raw data to non-HTTP services (Redis, Memcached, Elasticsearch) The vulnerability exists because undici writes the upgrade value directly to the socket without…</p>
  <p><strong>CVSS:</strong> 4.6 · <strong>CWE:</strong> CWE-93</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-1527">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-27794 – LangGraph Checkpoint defines the base interface for LangGraph checkpointers. Pri...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-27794</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-27794</guid>
    <pubDate>Wed, 25 Feb 2026 18:23:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-27794</strong></p>
  <p>LangGraph Checkpoint defines the base interface for LangGraph checkpointers. Prior to version 4.0.0, a Remote Code Execution vulnerability exists in LangGraph's caching layer when applications enable cache backends that inherit from `BaseCache` and opt nodes into caching via `CachePolicy`. Prior to `langgraph-checkpoint` 4.0.0, `BaseCache` defaults to `JsonPlusSerializer(pickle_fallback=True)`. W…</p>
  <p><strong>CVSS:</strong> 6.6 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27794">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-2970 – A vulnerability has been found in datapizza-labs datapizza-ai 0.0.2. Affected by...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-2970</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-2970</guid>
    <pubDate>Mon, 23 Feb 2026 05:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-2970</strong></p>
  <p>A vulnerability has been found in datapizza-labs datapizza-ai 0.0.2. Affected by this vulnerability is the function RedisCache of the file datapizza-ai-cache/redis/datapizza/cache/redis/cache.py. Such manipulation leads to deserialization. The attack requires being on the local network. A high complexity level is associated with this attack. The exploitation appears to be difficult. The exploit h…</p>
  <p><strong>CVSS:</strong> 4.6 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-2970">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-27574 – OneUptime is a solution for monitoring and managing online services. In versions...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-27574</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-27574</guid>
    <pubDate>Sat, 21 Feb 2026 11:15:57 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-27574</strong></p>
  <p>OneUptime is a solution for monitoring and managing online services. In versions 9.5.13 and below, custom JavaScript monitor feature uses Node.js's node:vm module (explicitly documented as not a security mechanism) to execute user-supplied code, allowing trivial sandbox escape via a well-known one-liner that grants full access to the underlying process. Because the probe runs with host networking…</p>
  <p><strong>CVSS:</strong> 9.9 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27574">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-27022 – @langchain/langgraph-checkpoint-redis is the Redis checkpoint and store implemen...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-27022</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-27022</guid>
    <pubDate>Fri, 20 Feb 2026 22:16:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-27022</strong></p>
  <p>@langchain/langgraph-checkpoint-redis is the Redis checkpoint and store implementation for LangGraph. A query injection vulnerability exists in the @langchain/langgraph-checkpoint-redis package's filter handling. The RedisSaver and ShallowRedisSaver classes construct RediSearch queries by directly interpolating user-provided filter keys and values without proper escaping. RediSearch has special s…</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-74</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-27022">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-23524 – Laravel Reverb provides a real-time WebSocket communication backend for Laravel ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-23524</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-23524</guid>
    <pubDate>Wed, 21 Jan 2026 22:15:50 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-23524</strong></p>
  <p>Laravel Reverb provides a real-time WebSocket communication backend for Laravel applications. In versions 1.6.3 and below, Reverb passes data from the Redis channel directly into PHP’s unserialize() function without restricting which classes can be instantiated, which leaves users vulnerable to Remote Code Execution. The exploitability of this vulnerability is increased because Redis servers are…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-23524">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-21874 – NiceGUI is a Python-based UI framework. From versions v2.10.0 to 3.4.1, an unaut...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-21874</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-21874</guid>
    <pubDate>Thu, 08 Jan 2026 10:15:55 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-21874</strong></p>
  <p>NiceGUI is a Python-based UI framework. From versions v2.10.0 to 3.4.1, an unauthenticated attacker can exhaust Redis connections by repeatedly opening and closing browser tabs on any NiceGUI application using Redis-backed storage. Connections are never released, leading to service degradation when Redis hits its connection limit. NiceGUI continues accepting new connections - errors are logged bu…</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-772</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-21874">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-66360 – An issue was discovered in Logpoint before 7.7.0. An improperly configured acces...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-66360</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-66360</guid>
    <pubDate>Fri, 28 Nov 2025 00:15:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-66360</strong></p>
  <p>An issue was discovered in Logpoint before 7.7.0. An improperly configured access control policy exposes sensitive Logpoint internal service (Redis) information to li-admin users. This can lead to privilege escalation.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-66360">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-59669 – A use of hard-coded credentials vulnerability in Fortinet FortiWeb 7.6.0, FortiW...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59669</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59669</guid>
    <pubDate>Tue, 18 Nov 2025 17:16:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-59669</strong></p>
  <p>A use of hard-coded credentials vulnerability in Fortinet FortiWeb 7.6.0, FortiWeb 7.4 all versions, FortiWeb 7.2 all versions, FortiWeb 7.0 all versions may allow an authenticated attacker with shell access to the device to connect to redis service and access its data</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-798</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59669">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-62507 – Redis is an open source, in-memory database that persists on disk. In versions 8...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-62507</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-62507</guid>
    <pubDate>Tue, 04 Nov 2025 22:16:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-62507</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. In versions 8.2.0 and above, a user can run the XACKDEL command with multiple ID's and trigger a stack buffer overflow, which may potentially lead to remote code execution. This issue is fixed in version 8.2.3. To workaround this issue without patching the redis-server executable is to prevent users from executing XACKDEL operatio…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-62507">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-59271 – Redis Enterprise Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59271</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59271</guid>
    <pubDate>Thu, 09 Oct 2025 21:15:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-59271</strong></p>
  <p>Redis Enterprise Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 8.7 · <strong>CWE:</strong> CWE-285</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59271">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-61765 – python-socketio is a Python implementation of the Socket.IO realtime client and ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-61765</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-61765</guid>
    <pubDate>Mon, 06 Oct 2025 16:15:35 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-61765</strong></p>
  <p>python-socketio is a Python implementation of the Socket.IO realtime client and server. A remote code execution vulnerability in python-socketio versions prior to 5.14.0 allows attackers to execute arbitrary Python code through malicious pickle deserialization in multi-server deployments on which the attacker previously gained access to the message queue that the servers use for internal communic…</p>
  <p><strong>CVSS:</strong> 6.4 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-61765">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-49844 – Redis is an open source, in-memory database that persists on disk. Versions 8.2...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-49844</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-49844</guid>
    <pubDate>Fri, 03 Oct 2025 20:15:32 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-49844</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. Versions 8.2.1 and below allow an authenticated user to use a specially crafted Lua script to manipulate the garbage collector, trigger a use-after-free and potentially lead to remote code execution. The problem exists in all versions of Redis with Lua scripting. This issue is fixed in version 8.2.2. To workaround this issue witho…</p>
  <p><strong>CVSS:</strong> 9.9 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49844">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-46819 – Redis is an open source, in-memory database that persists on disk. Versions 8.2...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-46819</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-46819</guid>
    <pubDate>Fri, 03 Oct 2025 19:15:43 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-46819</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. Versions 8.2.1 and below allow an authenticated user to use a specially crafted LUA script to read out-of-bound data or crash the server and subsequent denial of service. The problem exists in all versions of Redis with Lua scripting. This issue is fixed in version 8.2.2. To workaround this issue without patching the redis-server…</p>
  <p><strong>CVSS:</strong> 6.3 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-46819">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-46818 – Redis is an open source, in-memory database that persists on disk. Versions 8.2...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-46818</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-46818</guid>
    <pubDate>Fri, 03 Oct 2025 19:15:43 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-46818</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. Versions 8.2.1 and below allow an authenticated user to use a specially crafted Lua script to manipulate different LUA objects and potentially run their own code in the context of another user. The problem exists in all versions of Redis with LUA scripting. This issue is fixed in version 8.2.2. A workaround to mitigate the problem…</p>
  <p><strong>CVSS:</strong> 6.0 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-46818">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-46817 – Redis is an open source, in-memory database that persists on disk. Versions 8.2...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-46817</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-46817</guid>
    <pubDate>Fri, 03 Oct 2025 18:15:35 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-46817</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. Versions 8.2.1 and below allow an authenticated user to use a specially crafted Lua script to cause an integer overflow and potentially lead to remote code execution The problem exists in all versions of Redis with Lua scripting. This issue is fixed in version 8.2.2.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-46817">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-34202 – Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to 25.2.169 an...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-34202</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-34202</guid>
    <pubDate>Fri, 19 Sep 2025 19:15:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-34202</strong></p>
  <p>Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to 25.2.169 and Application prior to 25.2.1518 (VA and SaaS deployments) expose Docker internal networks in a way that allows an attacker on the same external L2 segment — or an attacker able to add routes using the appliance as a gateway — to reach container IPs directly. This grants access to internal services (HTTP APIs, Redis,…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-291</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-34202">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-34201 – Vasion Print (formerly PrinterLogic) Virtual Appliance Host and Application (VA ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-34201</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-34201</guid>
    <pubDate>Fri, 19 Sep 2025 19:15:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-34201</strong></p>
  <p>Vasion Print (formerly PrinterLogic) Virtual Appliance Host and Application (VA and SaaS deployments) run many Docker containers on shared internal networks without firewalling or segmentation between instances. A compromise of any single container allows direct access to internal services (HTTP, Redis, MySQL, etc.) on the overlay network. From a compromised container, an attacker can reach and e…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-653</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-34201">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-9364 – An open database issue exists in the affected product and version. The security ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-9364</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-9364</guid>
    <pubDate>Tue, 09 Sep 2025 13:15:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-9364</strong></p>
  <p>An open database issue exists in the affected product and version. The security issue stems from an over permissive Redis instance. This could result in an attacker on the intranet accessing sensitive data and potential alteration of data.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-497</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-9364">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-54472 – Unlimited memory allocation in redis protocol parser in Apache bRPC (all version...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-54472</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-54472</guid>
    <pubDate>Thu, 14 Aug 2025 09:15:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-54472</strong></p>
  <p>Unlimited memory allocation in redis protocol parser in Apache bRPC (all versions < 1.14.1) on all platforms allows attackers to crash the service via network.    Root Cause: In the bRPC Redis protocol parser code, memory for arrays or strings of corresponding sizes is allocated based on the integers read from the network. If the integer read from the network is too large, it may cause a bad allo…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-54472">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2025-46686 – Redis through 8.0.3 allows memory consumption via a multi-bulk command composed ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-46686</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-46686</guid>
    <pubDate>Wed, 23 Jul 2025 19:15:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2025-46686</strong></p>
  <p>Redis through 8.0.3 allows memory consumption via a multi-bulk command composed of many bulks, sent by an authenticated user. This occurs because the server allocates memory for the command arguments of every bulk, even when the command is skipped because of insufficient permissions. NOTE: this is disputed by the Supplier because abuse of the commands network protocol is not a violation of the Re…</p>
  <p><strong>CVSS:</strong> 3.5 · <strong>CWE:</strong> CWE-401</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-46686">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-48367 – Redis is an open source, in-memory database that persists on disk. An unauthenti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-48367</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-48367</guid>
    <pubDate>Mon, 07 Jul 2025 16:15:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-48367</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. An unauthenticated connection can cause repeated IP protocol errors, leading to client starvation and, ultimately, a denial of service. This vulnerability is fixed in 8.0.3, 7.4.5, 7.2.10, and 6.2.19.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-48367">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-32023 – Redis is an open source, in-memory database that persists on disk. From 2.8 to b...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-32023</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-32023</guid>
    <pubDate>Mon, 07 Jul 2025 16:15:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-32023</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. From 2.8 to before 8.0.3, 7.4.5, 7.2.10, and 6.2.19, an authenticated user may use a specially crafted string to trigger a stack/heap out of bounds write on hyperloglog operations, potentially leading to remote code execution. The bug likely affects all Redis versions with hyperloglog operations implemented. This vulnerability is…</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-680</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-32023">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-52935 – Integer Overflow or Wraparound vulnerability in dragonflydb dragonfly (src/redis...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-52935</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-52935</guid>
    <pubDate>Mon, 23 Jun 2025 10:15:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-52935</strong></p>
  <p>Integer Overflow or Wraparound vulnerability in dragonflydb dragonfly (src/redis/lua/struct modules). This vulnerability is associated with program files lua_struct.C.  This issue affects dragonfly: 1.30.1, 1.30.0, 1.28.18.</p>
  <p><strong>CVSS:</strong> 9.4 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-52935">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-48493 – The Yii 2 Redis extension provides the redis key-value store support for the Yii...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-48493</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-48493</guid>
    <pubDate>Thu, 05 Jun 2025 17:15:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-48493</strong></p>
  <p>The Yii 2 Redis extension provides the redis key-value store support for the Yii framework 2.0. On failing connection, the extension writes commands sequence to logs. Prior to version 2.0.20, AUTH parameters are written in plain text exposing username and password. That might be an issue if attacker has access to logs. Version 2.0.20 fixes the issue.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-532</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-48493">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-27151 – Redis is an open source, in-memory database that persists on disk. In versions s...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-27151</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-27151</guid>
    <pubDate>Thu, 29 May 2025 09:15:25 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-27151</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. In versions starting from 7.0.0 to before 8.0.2, a stack-based buffer overflow exists in redis-check-aof due to the use of memcpy with strlen(filepath) when copying a user-supplied file path into a fixed-size stack buffer. This allows an attacker to overflow the stack and potentially achieve code execution. This issue has been pat…</p>
  <p><strong>CVSS:</strong> 4.7 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-27151">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-21605 – Redis is an open source, in-memory database that persists on disk. In versions s...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-21605</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-21605</guid>
    <pubDate>Wed, 23 Apr 2025 16:15:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-21605</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. In versions starting at 2.6 and prior to 7.4.3, An unauthenticated client can cause unlimited growth of output buffers, until the server runs out of memory or is killed. By default, the Redis configuration does not limit the output buffer of normal clients (see client-output-buffer-limit). Therefore, the output buffer can grow unl…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-21605">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2025-26268 – DragonflyDB Dragonfly before 1.27.0 allows authenticated users to cause a denial...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-26268</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-26268</guid>
    <pubDate>Thu, 17 Apr 2025 18:15:48 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2025-26268</strong></p>
  <p>DragonflyDB Dragonfly before 1.27.0 allows authenticated users to cause a denial of service (daemon crash) via a crafted Redis command. The validity of the scan cursor was not checked.</p>
  <p><strong>CVSS:</strong> 3.3 · <strong>CWE:</strong> CWE-392</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-26268">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2025-29923 – go-redis is the official Redis client library for the Go programming language. P...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-29923</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-29923</guid>
    <pubDate>Thu, 20 Mar 2025 18:15:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2025-29923</strong></p>
  <p>go-redis is the official Redis client library for the Go programming language. Prior to 9.5.5, 9.6.3, and 9.7.3, go-redis potentially responds out of order when `CLIENT SETINFO` times out during connection establishment. This can happen when the client is configured to transmit its identity, there are network connectivity issues, or the client was configured with aggressive timeouts. The problem…</p>
  <p><strong>CVSS:</strong> 3.7 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-29923">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-1979 – Versions of the package ray before 2.43.0 are vulnerable to Insertion of Sensiti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-1979</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-1979</guid>
    <pubDate>Thu, 06 Mar 2025 05:15:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-1979</strong></p>
  <p>Versions of the package ray before 2.43.0 are vulnerable to Insertion of Sensitive Information into Log File where the redis password is being logged in the standard logging. If the redis password is passed as an argument, it will be logged and could potentially leak the password.This is only exploitable if:1) Logging is enabled;2) Redis is using password authentication;3) Those logs are…</p>
  <p><strong>CVSS:</strong> 6.4 · <strong>CWE:</strong> CWE-532</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-1979">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-27150 – Tuleap is an Open Source Suite to improve management of software developments an...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-27150</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-27150</guid>
    <pubDate>Tue, 04 Mar 2025 17:15:18 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-27150</strong></p>
  <p>Tuleap is an Open Source Suite to improve management of software developments and collaboration. The password to connect the Redis instance is not purged from the archive generated with tuleap collect-system-data. These archives are likely to be used by support teams that should not have access to this password. The vulnerability is fixed in Tuleap Community Edition 16.4.99.1740492866 and Tuleap…</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-538</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-27150">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-25069 – A Cross-Protocol Scripting vulnerability is found in Apache Kvrocks.

Since Kvro...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-25069</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-25069</guid>
    <pubDate>Fri, 07 Feb 2025 13:15:32 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-25069</strong></p>
  <p>A Cross-Protocol Scripting vulnerability is found in Apache Kvrocks.  Since Kvrocks didn't detect if "Host:" or "POST" appears in RESP requests, a valid HTTP request can also be sent to Kvrocks as a valid RESP request  and trigger some database operations, which can be dangerous when  it is chained with SSRF.  It is similiar to CVE-2016-10517 in Redis.  This issue affects Apache Kvrocks: from the…</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-115</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-25069">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-55656 – RedisBloom adds a set of probabilistic data structures to Redis. There is an int...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-55656</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-55656</guid>
    <pubDate>Wed, 08 Jan 2025 16:15:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-55656</strong></p>
  <p>RedisBloom adds a set of probabilistic data structures to Redis. There is an integer overflow vulnerability in RedisBloom, which is a module used in Redis. The integer overflow vulnerability allows an attacker (a redis client which knows the password) to allocate memory in the heap lesser than the required memory due to wraparound. Then read and write can be performed beyond this allocated memory…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-55656">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-51737 – RediSearch is a Redis module that provides querying, secondary indexing, and ful...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-51737</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-51737</guid>
    <pubDate>Wed, 08 Jan 2025 16:15:35 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-51737</strong></p>
  <p>RediSearch is a Redis module that provides querying, secondary indexing, and full-text search for Redis. An authenticated redis user executing FT.SEARCH or FT.AGGREGATE with a specially crafted LIMIT command argument, or FT.SEARCH with a specially crafted KNN command argument, can trigger an integer overflow, leading to heap overflow and potential remote code execution. This vulnerability is fixe…</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-51737">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-51480 – RedisTimeSeries is a time-series database (TSDB) module for Redis, by Redis. Exe...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-51480</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-51480</guid>
    <pubDate>Wed, 08 Jan 2025 16:15:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-51480</strong></p>
  <p>RedisTimeSeries is a time-series database (TSDB) module for Redis, by Redis. Executing one of these commands TS.QUERYINDEX, TS.MGET, TS.MRAGE, TS.MREVRANGE by an authenticated user, using specially crafted command arguments may cause an integer overflow, a subsequent heap overflow, and potentially lead to remote code execution. This vulnerability is fixed in 1.6.20, 1.8.15, 1.10.15, and 1.12.3.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-51480">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-51741 – Redis is an open source, in-memory database that persists on disk. An authentica...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-51741</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-51741</guid>
    <pubDate>Mon, 06 Jan 2025 22:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-51741</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. An authenticated with sufficient privileges may create a malformed ACL selector which, when accessed, triggers a server panic and subsequent denial of service. The problem is fixed in Redis 7.2.7 and 7.4.2.</p>
  <p><strong>CVSS:</strong> 4.4 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-51741">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-46981 – Redis is an open source, in-memory database that persists on disk. An authentica...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-46981</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-46981</guid>
    <pubDate>Mon, 06 Jan 2025 22:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-46981</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. An authenticated user may use a specially crafted Lua script to manipulate the garbage collector and potentially lead to remote code execution. The problem is fixed in 7.4.2, 7.2.7, and 6.2.17. An additional workaround to mitigate the problem without patching the redis-server executable is to prevent users from executing Lua scrip…</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-46981">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2024-52525 – Nextcloud Server is a self hosted personal cloud system. Under certain condition...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-52525</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-52525</guid>
    <pubDate>Fri, 15 Nov 2024 17:15:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2024-52525</strong></p>
  <p>Nextcloud Server is a self hosted personal cloud system. Under certain conditions the password of a user was stored unencrypted in the session data. The session data is encrypted before being saved in the session storage (Redis or disk), but it would allow a malicious process that gains access to the memory of the PHP process, to get access to the cleartext password of the user. It is recommended…</p>
  <p><strong>CVSS:</strong> 1.8 · <strong>CWE:</strong> CWE-312</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-52525">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-31449 – Redis is an open source, in-memory database that persists on disk. An authentica...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-31449</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-31449</guid>
    <pubDate>Mon, 07 Oct 2024 20:15:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-31449</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. An authenticated user may use a specially crafted Lua script to trigger a stack buffer overflow in the bit library, which may potentially lead to remote code execution. The problem exists in all versions of Redis with Lua scripting. This problem has been fixed in Redis versions 6.2.16, 7.2.6, and 7.4.1. Users are advised to upgrad…</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-31449">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-31228 – Redis is an open source, in-memory database that persists on disk. Authenticated...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-31228</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-31228</guid>
    <pubDate>Mon, 07 Oct 2024 20:15:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-31228</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. Authenticated users can trigger a denial-of-service by using specially crafted, long string match patterns on supported commands such as `KEYS`, `SCAN`, `PSUBSCRIBE`, `FUNCTION LIST`, `COMMAND LIST` and ACL definitions. Matching of extremely long patterns may result in unbounded recursion, leading to stack overflow and process cra…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-674</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-31228">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-31227 – Redis is an open source, in-memory database that persists on disk. An authentica...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-31227</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-31227</guid>
    <pubDate>Mon, 07 Oct 2024 20:15:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-31227</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. An authenticated with sufficient privileges may create a malformed ACL selector which, when accessed, triggers a server panic and subsequent denial of service. The problem exists in Redis 7 prior to versions 7.2.6 and 7.4.1. Users are advised to upgrade. There are no known workarounds for this vulnerability.</p>
  <p><strong>CVSS:</strong> 4.4 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-31227">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-6121 – An out-of-date version of Redis shipped with NI SystemLink Server is susceptible...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-6121</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-6121</guid>
    <pubDate>Mon, 22 Jul 2024 20:15:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-6121</strong></p>
  <p>An out-of-date version of Redis shipped with NI SystemLink Server is susceptible to multiple vulnerabilities, including CVE-2022-24834.  This affects NI SystemLink Server 2024 Q1 and prior versions.  It also affects NI FlexLogger 2023 Q2 and prior versions which installed this shared service.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-6121">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-23998 – goanother Another Redis Desktop Manager =&lt;1.6.1 is vulnerable to Cross Site Scri...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-23998</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-23998</guid>
    <pubDate>Fri, 05 Jul 2024 16:15:04 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-23998</strong></p>
  <p>goanother Another Redis Desktop Manager =<1.6.1 is vulnerable to Cross Site Scripting (XSS) via src/components/Setting.vue.</p>
  <p><strong>CVSS:</strong> 9.6 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-23998">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-5405 – A vulnerability had been discovered in WinNMP 19.02 consisting of an XSS attack ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-5405</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-5405</guid>
    <pubDate>Mon, 27 May 2024 12:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-5405</strong></p>
  <p>A vulnerability had been discovered in WinNMP 19.02 consisting of an XSS attack via /tools/redis.php page in the k, hash, key and p parameters. This vulnerability could allow a remote user to submit a specially crafted JavaScript payload for an authenticated user to retrieve their session details.</p>
  <p><strong>CVSS:</strong> 6.3 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-5405">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-31989 – Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. It has...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-31989</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-31989</guid>
    <pubDate>Tue, 21 May 2024 19:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-31989</strong></p>
  <p>Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. It has been discovered that an unprivileged pod in a different namespace on the same cluster could connect to the Redis server on port 6379. Despite having installed the latest version of the VPC CNI plugin on the EKS cluster, it requires manual enablement through configuration to enforce network policies. This raises conce…</p>
  <p><strong>CVSS:</strong> 9.0 · <strong>CWE:</strong> CWE-327</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-31989">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-52775 – In the Linux kernel, the following vulnerability has been resolved:

net/smc: av...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-52775</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-52775</guid>
    <pubDate>Tue, 21 May 2024 16:15:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-52775</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  net/smc: avoid data corruption caused by decline  We found a data corruption issue during testing of SMC-R on Redis applications.  The benchmark has a low probability of reporting a strange error as shown below.  "Error: Protocol error, got "\xe2" as reply type byte"  Finally, we found that the retrieved error data was as follow…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-52775">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-32971 – Apollo Router is a configurable, graph router written in Rust to run a federated...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-32971</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-32971</guid>
    <pubDate>Thu, 02 May 2024 07:15:21 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-32971</strong></p>
  <p>Apollo Router is a configurable, graph router written in Rust to run a federated supergraph that uses Apollo Federation 2. The affected versions of Apollo Router contain a bug that in limited circumstances, could lead to unexpected operations being executed which can result in unintended data or effects. This only affects Router instances configured to use distributed query plan caching. The root…</p>
  <p><strong>CVSS:</strong> 9.0 · <strong>CWE:</strong> CWE-440</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-32971">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-3625 – A flaw was found in Quay, where Quay's database is stored in plain text in mirro...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-3625</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-3625</guid>
    <pubDate>Thu, 25 Apr 2024 18:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-3625</strong></p>
  <p>A flaw was found in Quay, where Quay's database is stored in plain text in mirror-registry on Jinja's config.yaml file. This issue leaves the possibility of a malicious actor with access to this file to gain access to Quay's Redis instance.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-256</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-3625">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-29902 – Cosign provides code signing and transparency for containers and binaries. Prior...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-29902</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-29902</guid>
    <pubDate>Wed, 10 Apr 2024 23:15:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-29902</strong></p>
  <p>Cosign provides code signing and transparency for containers and binaries. Prior to version 2.2.4, a remote image with a malicious attachment can cause denial of service of the host machine running Cosign. This can impact other services on the machine that rely on having memory available such as a Redis database which can result in data loss. It can also impact the availability of other services…</p>
  <p><strong>CVSS:</strong> 4.2 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-29902">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-25116 – RedisBloom adds a set of probabilistic data structures to Redis. Starting in ver...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-25116</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-25116</guid>
    <pubDate>Tue, 09 Apr 2024 18:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-25116</strong></p>
  <p>RedisBloom adds a set of probabilistic data structures to Redis. Starting in version 2.0.0 and prior to version 2.4.7 and 2.6.10, authenticated users can use the `CF.RESERVE` command to trigger a runtime assertion and termination of the Redis server process. The problem is fixed in RedisBloom 2.4.7 and 2.6.10.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-25116">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-25115 – RedisBloom adds a set of probabilistic data structures to Redis. Starting in ver...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-25115</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-25115</guid>
    <pubDate>Tue, 09 Apr 2024 18:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-25115</strong></p>
  <p>RedisBloom adds a set of probabilistic data structures to Redis. Starting in version 2.0.0 and prior to version 2.4.7 and 2.6.10, specially crafted `CF.LOADCHUNK` commands may be used by authenticated users to perform heap overflow, which may lead to remote code execution. The problem is fixed in RedisBloom 2.4.7 and 2.6.10.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-120</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-25115">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-3019 – A flaw was found in PCP. The default pmproxy configuration exposes the Redis ser...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-3019</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-3019</guid>
    <pubDate>Thu, 28 Mar 2024 19:15:49 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-3019</strong></p>
  <p>A flaw was found in PCP. The default pmproxy configuration exposes the Redis server backend to the local network, allowing remote command execution with the privileges of the Redis user. This issue can only be exploited when pmproxy is running. By default, pmproxy is not running and needs to be started manually. The pmproxy service is usually started from the 'Metrics settings' page of the Cockpi…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-668</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-3019">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-27917 – Shopware is an open commerce platform based on Symfony Framework and Vue. The Sy...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-27917</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-27917</guid>
    <pubDate>Wed, 06 Mar 2024 20:15:48 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-27917</strong></p>
  <p>Shopware is an open commerce platform based on Symfony Framework and Vue. The Symfony Session Handler pops the Session Cookie and assigns it to the Response. Since Shopware 6.5.8.0, the 404 pages are cached to improve the performance of 404 pages. So the cached Response which contains a Session Cookie when the Browser accessing the 404 page, has no cookies yet. The Symfony Session Handler is in u…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-524</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-27917">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2023-31654 – Redis raft master-1b8bd86 to master-7b46079 was discovered to contain an ODR vio...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-31654</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-31654</guid>
    <pubDate>Tue, 23 Jan 2024 22:15:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2023-31654</strong></p>
  <p>Redis raft master-1b8bd86 to master-7b46079 was discovered to contain an ODR violation via the component hiredisAllocFns at /opt/fs/redisraft/deps/hiredis/alloc.c.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-31654">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-41056 – Redis is an in-memory database that persists on disk. Redis incorrectly handles ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-41056</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-41056</guid>
    <pubDate>Wed, 10 Jan 2024 16:15:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-41056</strong></p>
  <p>Redis is an in-memory database that persists on disk. Redis incorrectly handles resizing of memory buffers which can result in integer overflow that leads to heap overflow and potential remote code execution. This issue has been patched in version 7.0.15 and 7.2.4.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-41056">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-50727 – Resque is a Redis-backed Ruby library for creating background jobs, placing them...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-50727</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-50727</guid>
    <pubDate>Fri, 22 Dec 2023 21:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-50727</strong></p>
  <p>Resque is a Redis-backed Ruby library for creating background jobs, placing them on multiple queues, and processing them later. Reflected XSS issue occurs when /queues is appended with /"><svg%20onload=alert(domain)>. This issue has been patched in version 2.6.0.</p>
  <p><strong>CVSS:</strong> 6.3 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-50727">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-50725 – Resque is a Redis-backed Ruby library for creating background jobs, placing them...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-50725</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-50725</guid>
    <pubDate>Fri, 22 Dec 2023 20:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-50725</strong></p>
  <p>Resque is a Redis-backed Ruby library for creating background jobs, placing them on multiple queues, and processing them later. The following paths in resque-web have been found to be vulnerable to reflected XSS: "/failed/?class=<script>alert(document.cookie)</script>" and "/queues/><img src=a onerror=alert(document.cookie)>". This issue has been patched in version 2.2.1.</p>
  <p><strong>CVSS:</strong> 6.3 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-50725">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-50724 – Resque (pronounced like "rescue") is a Redis-backed library for creating backgro...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-50724</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-50724</guid>
    <pubDate>Thu, 21 Dec 2023 15:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-50724</strong></p>
  <p>Resque (pronounced like "rescue") is a Redis-backed library for creating background jobs, placing those jobs on multiple queues, and processing them later. resque-web in resque versions before 2.1.0 are vulnerable to reflected XSS through the current_queue parameter in the path of the queues endpoint. This issue has been patched in version 2.1.0.</p>
  <p><strong>CVSS:</strong> 6.3 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-50724">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-47120 – Discourse is an open source platform for community discussion. In versions 3.1.0...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-47120</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-47120</guid>
    <pubDate>Fri, 10 Nov 2023 16:15:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-47120</strong></p>
  <p>Discourse is an open source platform for community discussion. In versions 3.1.0 through 3.1.2 of the `stable` branch and versions 3.1.0,beta6 through 3.2.0.beta2 of the `beta` and `tests-passed` branches, Redis memory can be depleted by crafting a site with an abnormally long favicon URL and drafting multiple posts which Onebox it. The issue is patched in version 3.1.3 of the `stable` branch and…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-47120">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-47004 – Buffer Overflow vulnerability in Redis RedisGraph v.2.x through v.2.12.8 and fix...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-47004</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-47004</guid>
    <pubDate>Mon, 06 Nov 2023 22:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-47004</strong></p>
  <p>Buffer Overflow vulnerability in Redis RedisGraph v.2.x through v.2.12.8 and fixed in v.2.12.9 allows an attacker to execute arbitrary code via the code logic after valid authentication.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-787</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-47004">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2023-45145 – Redis is an in-memory database that persists on disk. On startup, Redis begins l...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-45145</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-45145</guid>
    <pubDate>Wed, 18 Oct 2023 21:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2023-45145</strong></p>
  <p>Redis is an in-memory database that persists on disk. On startup, Redis begins listening on a Unix socket before adjusting its permissions to the user-provided configuration. If a permissive umask(2) is used, this creates a race condition that enables, during a short period of time, another process to establish an otherwise unauthorized connection. This problem has existed since Redis 2.6.0-RC1.…</p>
  <p><strong>CVSS:</strong> 3.6 · <strong>CWE:</strong> CWE-668</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-45145">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2023-43119 – An Access Control issue discovered in Extreme Networks Switch Engine (EXOS) befo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-43119</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-43119</guid>
    <pubDate>Mon, 16 Oct 2023 20:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2023-43119</strong></p>
  <p>An Access Control issue discovered in Extreme Networks Switch Engine (EXOS) before 32.5.1.5, also fixed in 22.7, 31.7.2 allows attackers to gain escalated privileges using crafted telnet commands via Redis server.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-43119">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-45148 – Nextcloud is an open source home cloud server. When Memcached is used as `memcac...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-45148</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-45148</guid>
    <pubDate>Mon, 16 Oct 2023 19:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-45148</strong></p>
  <p>Nextcloud is an open source home cloud server. When Memcached is used as `memcache.distributed` the rate limiting in Nextcloud Server could be reset unexpectedly resetting the rate count earlier than intended. Users are advised to upgrade to versions 25.0.11, 26.0.6 or 27.1.0. Users unable to upgrade should change their config setting `memcache.distributed` to `\OC\Memcache\Redis` and install Red…</p>
  <p><strong>CVSS:</strong> 4.3 · <strong>CWE:</strong> CWE-307</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-45148">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2023-42809 – Redisson is a Java Redis client that uses the Netty framework. Prior to version ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-42809</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-42809</guid>
    <pubDate>Wed, 04 Oct 2023 20:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2023-42809</strong></p>
  <p>Redisson is a Java Redis client that uses the Netty framework. Prior to version 3.22.0, some of the messages received from the Redis server contain Java objects that the client deserializes without further validation. Attackers that manage to trick clients into communicating with a malicious server can include especially crafted objects in its responses that, once deserialized by the client, forc…</p>
  <p><strong>CVSS:</strong> 9.6 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-42809">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2023-41053 – Redis is an in-memory database that persists on disk. Redis does not correctly i...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-41053</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-41053</guid>
    <pubDate>Wed, 06 Sep 2023 21:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2023-41053</strong></p>
  <p>Redis is an in-memory database that persists on disk. Redis does not correctly identify keys accessed by `SORT_RO` and as a result may grant users executing this command access to keys that are not explicitly authorized by the ACL configuration. The problem exists in Redis 7.0 or newer and has been fixed in Redis 7.0.13 and 7.2.1. Users are advised to upgrade. There are no known workarounds for t…</p>
  <p><strong>CVSS:</strong> 3.3 · <strong>CWE:</strong> CWE-269</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-41053">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2021-31294 – Redis before 6cbea7d allows a replica to cause an assertion failure in a primary...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-31294</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-31294</guid>
    <pubDate>Sat, 15 Jul 2023 23:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2021-31294</strong></p>
  <p>Redis before 6cbea7d allows a replica to cause an assertion failure in a primary server by sending a non-administrative command (specifically, a SET command). NOTE: this was fixed for Redis 6.2.x and 7.x in 2021. Versions before 6.2 were not intended to have safety guarantees related to this.</p>
  <p><strong>CVSS:</strong> 5.9 · <strong>CWE:</strong> CWE-617</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-31294">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-24834 – Redis is an in-memory database that persists on disk. A specially crafted Lua sc...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-24834</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-24834</guid>
    <pubDate>Thu, 13 Jul 2023 15:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-24834</strong></p>
  <p>Redis is an in-memory database that persists on disk. A specially crafted Lua script executing in Redis can trigger a heap overflow in the cjson library, and result with heap corruption and potentially remote code execution. The problem exists in all versions of Redis with Lua scripting support, starting from 2.6, and affects only authenticated and authorized users. The problem is fixed in versio…</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-24834">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-36824 – Redis is an in-memory database that persists on disk. In Redit 7.0 prior to 7.0...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-36824</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-36824</guid>
    <pubDate>Tue, 11 Jul 2023 17:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-36824</strong></p>
  <p>Redis is an in-memory database that persists on disk. In Redit 7.0 prior to 7.0.12, extracting key names from a command and a list of arguments may, in some cases, trigger a heap overflow and result in reading random heap memory, heap corruption and potentially remote code execution. Several scenarios that may lead to authenticated users executing a specially crafted `COMMAND GETKEYS` or `COMMAND…</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-36824">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-22593 – IBM Robotic Process Automation for Cloud Pak 21.0.1 through 21.0.7.3 and 23.0.0 ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-22593</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-22593</guid>
    <pubDate>Tue, 27 Jun 2023 19:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-22593</strong></p>
  <p>IBM Robotic Process Automation for Cloud Pak 21.0.1 through 21.0.7.3 and 23.0.0 through 23.0.3 is vulnerable to security misconfiguration of the Redis container which may provide elevated privileges.  IBM X-Force ID:  244074.</p>
  <p><strong>CVSS:</strong> 4.0 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-22593">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-31655 – redis v7.0.10 was discovered to contain a segmentation violation. This vulnerabi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-31655</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-31655</guid>
    <pubDate>Thu, 18 May 2023 20:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-31655</strong></p>
  <p>redis v7.0.10 was discovered to contain a segmentation violation. This vulnerability allows attackers to cause a Denial of Service (DoS) via unspecified vectors.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-31655">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-28856 – Redis is an open source, in-memory database that persists on disk. Authenticated...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-28856</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-28856</guid>
    <pubDate>Tue, 18 Apr 2023 21:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-28856</strong></p>
  <p>Redis is an open source, in-memory database that persists on disk. Authenticated users can use the `HINCRBYFLOAT` command to create an invalid hash field that will crash Redis on access in affected versions. This issue has been addressed in in versions 7.0.11, 6.2.12, and 6.0.19. Users are advised to upgrade. There are no known workarounds for this issue.</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-28856">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-41331 – A missing authentication for critical function vulnerability [CWE-306] in FortiP...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-41331</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-41331</guid>
    <pubDate>Tue, 11 Apr 2023 17:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-41331</strong></p>
  <p>A missing authentication for critical function vulnerability [CWE-306] in FortiPresence infrastructure server before version 1.2.1 allows a remote, unauthenticated attacker to access the Redis and MongoDB instances via crafted authentication requests.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-306</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-41331">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-28859 – redis-py before 4.4.4 and 4.5.x before 4.5.4 leaves a connection open after canc...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-28859</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-28859</guid>
    <pubDate>Sun, 26 Mar 2023 19:15:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-28859</strong></p>
  <p>redis-py before 4.4.4 and 4.5.x before 4.5.4 leaves a connection open after canceling an async Redis command at an inopportune time, and can send response data to the client of an unrelated request. (This could, for example, happen for a non-pipeline operation.) NOTE: the solutions for CVE-2023-28859 address data leakage across AsyncIO connections in general.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-459</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-28859">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2023-28858 – redis-py before 4.5.3 leaves a connection open after canceling an async Redis co...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-28858</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-28858</guid>
    <pubDate>Sun, 26 Mar 2023 19:15:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2023-28858</strong></p>
  <p>redis-py before 4.5.3 leaves a connection open after canceling an async Redis command at an inopportune time, and can send response data to the client of an unrelated request in an off-by-one manner. NOTE: this CVE Record was initially created in response to reports about ChatGPT, and 4.3.6, 4.4.3, and 4.5.3 were released (changing the behavior for pipeline operations); however, please see CVE-20…</p>
  <p><strong>CVSS:</strong> 3.7 · <strong>CWE:</strong> CWE-193</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-28858">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
