Vulnerabilities > Redis

DATE CVE VULNERABILITY TITLE RISK
2023-03-26 CVE-2023-28859 Incomplete Cleanup vulnerability in Redis Redis-Py
redis-py before 4.4.4 and 4.5.x before 4.5.4 leaves a connection open after canceling an async Redis command at an inopportune time, and can send response data to the client of an unrelated request.
network
low complexity
redis CWE-459
6.5
2023-03-20 CVE-2023-28425 Command Injection vulnerability in Redis 7.0.8/7.0.9
Redis is an in-memory database that persists on disk.
local
low complexity
redis CWE-77
5.5
2023-03-02 CVE-2023-25155 Integer Overflow or Wraparound vulnerability in Redis
Redis is an in-memory database that persists on disk.
network
low complexity
redis CWE-190
6.5
2023-03-01 CVE-2022-36021 Algorithmic Complexity vulnerability in Redis
Redis is an in-memory database that persists on disk.
local
low complexity
redis CWE-407
5.5
2023-01-20 CVE-2022-35977 Integer Overflow or Wraparound vulnerability in Redis
Redis is an in-memory database that persists on disk.
local
low complexity
redis CWE-190
5.5
2023-01-20 CVE-2023-22458 Integer Overflow or Wraparound vulnerability in Redis
Redis is an in-memory database that persists on disk.
local
low complexity
redis CWE-190
5.5
2022-10-28 CVE-2022-3734 Untrusted Search Path vulnerability in Redis
A vulnerability was found in a port or fork of Redis.
network
low complexity
redis CWE-426
critical
9.8
2022-10-21 CVE-2022-3647 Improper Resource Shutdown or Release vulnerability in Redis
** DISPUTED ** A vulnerability, which was classified as problematic, was found in Redis up to 6.2.7/7.0.5.
local
low complexity
redis CWE-404
3.3
2022-09-23 CVE-2022-35951 Integer Overflow or Wraparound vulnerability in multiple products
Redis is an in-memory database that persists on disk.
network
low complexity
redis fedoraproject CWE-190
critical
9.8
2022-07-19 CVE-2022-31144 Heap-based Buffer Overflow vulnerability in Redis
Redis is an in-memory database that persists on disk.
network
low complexity
redis CWE-122
8.8