Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 14

Количество 14

ubuntu логотип

CVE-2025-67733

5 месяцев назад

Valkey is a distributed key-value database. Prior to versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12, a malicious user can use scripting commands to inject arbitrary information into the response stream for the given client, potentially corrupting or returning tampered data to other users on the same connection. The error handling code for lua scripts does not properly handle null characters. Versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12 fix the issue.

CVSS3: 8.5
EPSS: Низкий
redhat логотип

CVE-2025-67733

5 месяцев назад

Valkey is a distributed key-value database. Prior to versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12, a malicious user can use scripting commands to inject arbitrary information into the response stream for the given client, potentially corrupting or returning tampered data to other users on the same connection. The error handling code for lua scripts does not properly handle null characters. Versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12 fix the issue.

CVSS3: 7.1
EPSS: Низкий
nvd логотип

CVE-2025-67733

5 месяцев назад

Valkey is a distributed key-value database. Prior to versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12, a malicious user can use scripting commands to inject arbitrary information into the response stream for the given client, potentially corrupting or returning tampered data to other users on the same connection. The error handling code for lua scripts does not properly handle null characters. Versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12 fix the issue.

CVSS3: 8.5
EPSS: Низкий
msrc логотип

CVE-2025-67733

5 месяцев назад

Valkey Affected by RESP Protocol Injection via Lua error_reply

CVSS3: 8.5
EPSS: Низкий
debian логотип

CVE-2025-67733

5 месяцев назад

Valkey is a distributed key-value database. Prior to versions 9.0.2, 8 ...

CVSS3: 8.5
EPSS: Низкий
fstec логотип

BDU:2026-07333

5 месяцев назад

Уязвимость сервера структур данных Valkey, связанная с недостаточной нейтрализацией специальных элементов в запросе, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.1
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0848-1

5 месяцев назад

Security update for valkey

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0685-1

5 месяцев назад

Security update for valkey

EPSS: Низкий
redos логотип

ROS-20260430-73-0001

3 месяца назад

Уязвимость valkey

CVSS3: 7.1
EPSS: Низкий
rocky логотип

RLSA-2026:3507

5 месяцев назад

Important: valkey security update

EPSS: Низкий
rocky логотип

RLSA-2026:3443

5 месяцев назад

Important: valkey security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-3507

5 месяцев назад

ELSA-2026-3507: valkey security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-3443

5 месяцев назад

ELSA-2026-3443: valkey security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20776-1

2 месяца назад

Security update for valkey

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-67733

Valkey is a distributed key-value database. Prior to versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12, a malicious user can use scripting commands to inject arbitrary information into the response stream for the given client, potentially corrupting or returning tampered data to other users on the same connection. The error handling code for lua scripts does not properly handle null characters. Versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12 fix the issue.

CVSS3: 8.5
1%
Низкий
5 месяцев назад
redhat логотип
CVE-2025-67733

Valkey is a distributed key-value database. Prior to versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12, a malicious user can use scripting commands to inject arbitrary information into the response stream for the given client, potentially corrupting or returning tampered data to other users on the same connection. The error handling code for lua scripts does not properly handle null characters. Versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12 fix the issue.

CVSS3: 7.1
1%
Низкий
5 месяцев назад
nvd логотип
CVE-2025-67733

Valkey is a distributed key-value database. Prior to versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12, a malicious user can use scripting commands to inject arbitrary information into the response stream for the given client, potentially corrupting or returning tampered data to other users on the same connection. The error handling code for lua scripts does not properly handle null characters. Versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12 fix the issue.

CVSS3: 8.5
1%
Низкий
5 месяцев назад
msrc логотип
CVE-2025-67733

Valkey Affected by RESP Protocol Injection via Lua error_reply

CVSS3: 8.5
1%
Низкий
5 месяцев назад
debian логотип
CVE-2025-67733

Valkey is a distributed key-value database. Prior to versions 9.0.2, 8 ...

CVSS3: 8.5
1%
Низкий
5 месяцев назад
fstec логотип
BDU:2026-07333

Уязвимость сервера структур данных Valkey, связанная с недостаточной нейтрализацией специальных элементов в запросе, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.1
1%
Низкий
5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0848-1

Security update for valkey

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0685-1

Security update for valkey

5 месяцев назад
redos логотип
ROS-20260430-73-0001

Уязвимость valkey

CVSS3: 7.1
1%
Низкий
3 месяца назад
rocky логотип
RLSA-2026:3507

Important: valkey security update

5 месяцев назад
rocky логотип
RLSA-2026:3443

Important: valkey security update

5 месяцев назад
oracle-oval логотип
ELSA-2026-3507

ELSA-2026-3507: valkey security update (IMPORTANT)

5 месяцев назад
oracle-oval логотип
ELSA-2026-3443

ELSA-2026-3443: valkey security update (IMPORTANT)

5 месяцев назад
suse-cvrf логотип
openSUSE-SU-2026:20776-1

Security update for valkey

2 месяца назад

Уязвимостей на страницу

exploitDog - Комплексное решение для обнаружения, оценки и устранения уязвимостей.