Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 20

Количество 20

github логотип

GHSA-8ghh-qpmp-7826

3 месяца назад

Lua Use-After-Free may lead to remote code execution

EPSS: Низкий
ubuntu логотип

CVE-2026-23631

3 месяца назад

Redis is an in-memory data structure store. In all versions of redis-server with Lua scripting, an authenticated attacker can exploit the master-replica synchronization mechanism to trigger a use-after-free on replicas where replica-read-only is disabled or can be disabled, which may lead to remote code execution. A workaround is to prevent users from executing Lua scripts or avoid using replicas where replica-read-only is disabled. This is patched in version 8.6.3.

CVSS3: 8.1
EPSS: Низкий
redhat логотип

CVE-2026-23631

3 месяца назад

Redis is an in-memory data structure store. In all versions of redis-server with Lua scripting, an authenticated attacker can exploit the master-replica synchronization mechanism to trigger a use-after-free on replicas where replica-read-only is disabled or can be disabled, which may lead to remote code execution. A workaround is to prevent users from executing Lua scripts or avoid using replicas where replica-read-only is disabled. This is patched in version 8.6.3.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2026-23631

3 месяца назад

Redis is an in-memory data structure store. In all versions of redis-server with Lua scripting, an authenticated attacker can exploit the master-replica synchronization mechanism to trigger a use-after-free on replicas where replica-read-only is disabled or can be disabled, which may lead to remote code execution. A workaround is to prevent users from executing Lua scripts or avoid using replicas where replica-read-only is disabled. This is patched in version 8.6.3.

CVSS3: 8.1
EPSS: Низкий
msrc логотип

CVE-2026-23631

около 2 месяцев назад

redis-server Lua use-after-free may allow remote code execution

EPSS: Низкий
debian логотип

CVE-2026-23631

3 месяца назад

Redis is an in-memory data structure store. In all versions of redis-s ...

CVSS3: 8.1
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2100-1

2 месяца назад

Security update for redis7

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2097-1

2 месяца назад

Security update for redis7

EPSS: Низкий
redos логотип

ROS-20260708-73-0035

25 дней назад

Уязвимость valkey

CVSS3: 8.1
EPSS: Низкий
fstec логотип

BDU:2026-06451

3 месяца назад

Уязвимость интерпретатора скриптов Lua системы управления базами данных (СУБД) Redis, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.1
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2099-1

2 месяца назад

Security update for redis

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1950-1

3 месяца назад

Security update for valkey

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1949-1

3 месяца назад

Security update for valkey

EPSS: Низкий
rocky логотип

RLSA-2026:25925

около 2 месяцев назад

Important: valkey security update

EPSS: Низкий
rocky логотип

RLSA-2026:25219

около 2 месяцев назад

Important: redis:7 security update

EPSS: Низкий
rocky логотип

RLSA-2026:25216

около 2 месяцев назад

Important: valkey security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-25925

около 1 месяца назад

ELSA-2026-25925: valkey security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-25219

около 1 месяца назад

ELSA-2026-25219: redis:7 security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-25216

17 дней назад

ELSA-2026-25216: valkey security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20776-1

3 месяца назад

Security update for valkey

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-8ghh-qpmp-7826

Lua Use-After-Free may lead to remote code execution

2%
Низкий
3 месяца назад
ubuntu логотип
CVE-2026-23631

Redis is an in-memory data structure store. In all versions of redis-server with Lua scripting, an authenticated attacker can exploit the master-replica synchronization mechanism to trigger a use-after-free on replicas where replica-read-only is disabled or can be disabled, which may lead to remote code execution. A workaround is to prevent users from executing Lua scripts or avoid using replicas where replica-read-only is disabled. This is patched in version 8.6.3.

CVSS3: 8.1
2%
Низкий
3 месяца назад
redhat логотип
CVE-2026-23631

Redis is an in-memory data structure store. In all versions of redis-server with Lua scripting, an authenticated attacker can exploit the master-replica synchronization mechanism to trigger a use-after-free on replicas where replica-read-only is disabled or can be disabled, which may lead to remote code execution. A workaround is to prevent users from executing Lua scripts or avoid using replicas where replica-read-only is disabled. This is patched in version 8.6.3.

CVSS3: 8.8
2%
Низкий
3 месяца назад
nvd логотип
CVE-2026-23631

Redis is an in-memory data structure store. In all versions of redis-server with Lua scripting, an authenticated attacker can exploit the master-replica synchronization mechanism to trigger a use-after-free on replicas where replica-read-only is disabled or can be disabled, which may lead to remote code execution. A workaround is to prevent users from executing Lua scripts or avoid using replicas where replica-read-only is disabled. This is patched in version 8.6.3.

CVSS3: 8.1
2%
Низкий
3 месяца назад
msrc логотип
CVE-2026-23631

redis-server Lua use-after-free may allow remote code execution

2%
Низкий
около 2 месяцев назад
debian логотип
CVE-2026-23631

Redis is an in-memory data structure store. In all versions of redis-s ...

CVSS3: 8.1
2%
Низкий
3 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2100-1

Security update for redis7

2 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2097-1

Security update for redis7

2 месяца назад
redos логотип
ROS-20260708-73-0035

Уязвимость valkey

CVSS3: 8.1
2%
Низкий
25 дней назад
fstec логотип
BDU:2026-06451

Уязвимость интерпретатора скриптов Lua системы управления базами данных (СУБД) Redis, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.1
2%
Низкий
3 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2099-1

Security update for redis

2 месяца назад
suse-cvrf логотип
SUSE-SU-2026:1950-1

Security update for valkey

3 месяца назад
suse-cvrf логотип
SUSE-SU-2026:1949-1

Security update for valkey

3 месяца назад
rocky логотип
RLSA-2026:25925

Important: valkey security update

около 2 месяцев назад
rocky логотип
RLSA-2026:25219

Important: redis:7 security update

около 2 месяцев назад
rocky логотип
RLSA-2026:25216

Important: valkey security update

около 2 месяцев назад
oracle-oval логотип
ELSA-2026-25925

ELSA-2026-25925: valkey security update (IMPORTANT)

около 1 месяца назад
oracle-oval логотип
ELSA-2026-25219

ELSA-2026-25219: redis:7 security update (IMPORTANT)

около 1 месяца назад
oracle-oval логотип
ELSA-2026-25216

ELSA-2026-25216: valkey security update (IMPORTANT)

17 дней назад
suse-cvrf логотип
openSUSE-SU-2026:20776-1

Security update for valkey

3 месяца назад

Уязвимостей на страницу