Vulnerabilities > Redis > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-01-23 CVE-2023-31654 Unspecified vulnerability in Redis Redisraft
Redis raft master-1b8bd86 to master-7b46079 was discovered to contain an ODR violation via the component hiredisAllocFns at /opt/fs/redisraft/deps/hiredis/alloc.c.
network
low complexity
redis
critical
9.8
2022-10-28 CVE-2022-3734 Untrusted Search Path vulnerability in Redis
A vulnerability was found in a port or fork of Redis.
network
low complexity
redis CWE-426
critical
9.8
2022-09-23 CVE-2022-35951 Integer Overflow or Wraparound vulnerability in multiple products
Redis is an in-memory database that persists on disk.
network
low complexity
redis fedoraproject CWE-190
critical
9.8
2022-02-18 CVE-2022-0543 Missing Authorization vulnerability in Redis
It was discovered, that redis, a persistent key-value database, due to a packaging issue, is prone to a (Debian-specific) Lua sandbox escape, which could result in remote code execution.
network
low complexity
redis CWE-862
critical
10.0