Catalog / Redis

Redis security advisories

All 47 advisories Redis has published with an identifier, newest first. Severity is the one its publisher assigned, and the fix is the release the publisher named. Nothing on this page is our judgement.

Advisories
47 45 carry a CVE
critical
1
high
27
medium
14
low
5
Fix in the archive
2 of 47 matched to a release
Oldest
23 Feb 2021 5.6 years ago

45 of these point at a version older than anything the archive holds, so there is no release page to link. That is a gap in what was collected, not evidence that the fix does not exist. This page is a copy of what the publisher published, kept for reference. The authoritative source for a security question is the publisher, and an advisory missing from here is not evidence that none exists. What this page does and does not tell you sets out the limits in full.

Newest first

Every product
CVE-2026-23479high

Use-After-Free in unblock client flow may lead to remote code execution

GHSA-93m2-935m-8rj3
CVE-2026-23631medium

Lua Use-After-Free may lead to remote code execution

GHSA-8ghh-qpmp-7826
CVE-2026-25243high

Invalid Memory Access in Redis RESTORE Command May Lead to Remote Code Execution

GHSA-c8h9-259x-jff4
CVE-2025-46818medium

Running Lua function as a different user

GHSA-qrv7-wcrx-q5jp
CVE-2025-46819medium

Out of bound read due to a bug in LUA

GHSA-4c68-q8q8-3g4f
CVE-2025-46817high

Lua library commands may lead to integer overflow and potential RCE

GHSA-m8fj-85cg-7vhp
CVE-2025-48367high

Redis DoS Vulnerability due to bad connection error handling

GHSA-4q32-c38c-pwgq
CVE-2025-32023high

Out of bounds write in hyperloglog commands leads to RCE

GHSA-rp2m-q4j6-gr43
CVE-2025-27151medium

redis-check-aof may lead to stack overflow and potential RCE

GHSA-5453-q98w-cmvm
CVE-2025-21605high

Redis DoS Vulnerability due to unlimited growth of output buffers abused by unauthenticated client

GHSA-r67f-p999-2gff
CVE-2024-46981high

Lua library commands may lead to remote code execution

GHSA-39h2-x6c4-6w4cFixed in 6.2, not held here
CVE-2024-51741medium

Denial-of-service due to malformed ACL selectors

GHSA-prpq-rh5h-46g9
CVE-2024-31228medium

Denial-of-service due to unbounded pattern matching

GHSA-66gq-c942-6976Fixed in 6.2.16, not held here
CVE-2024-31227medium

Denial-of-service due to malformed ACL selectors

GHSA-38p4-26x2-vqhhFixed in 7.2.6, not held here
CVE-2024-31449high

Lua library commands may lead to stack overflow and potential RCE

GHSA-whxg-wx83-85p5Fixed in 6.2.16, not held here
CVE-2023-41056high

Certain sequence of payloads may lead to remote code execution

GHSA-xr47-pcmx-fq2mFixed in 7.0.15, not held here
CVE-2023-45145low

Redis Unix-domain socket may be exposed with the wrong permissions for a short time window.

GHSA-ghmp-889m-7cvxFixed in 7.2.2, not held here
CVE-2023-41053low

Redis SORT_RO may bypass ACL configuration

GHSA-q4jr-5p56-4xwcFixed in 7.0.13, not held here
CVE-2022-24834high

Heap overflow issue with the Lua cjson and cmsgpack libraries used by Redis

GHSA-p8x2-9v9q-c838Fixed in 7.0.12, not held here
CVE-2023-36824high

Heap overflow in COMMAND GETKEYS and ACL evaluation

GHSA-4cfx-h9gq-xpx3Fixed in 7.0.12, not held here
CVE-2023-28856medium

HINCRBYFLOAT can be used to crash a redis-server process

GHSA-hjv8-vjf6-wcr6Fixed in 7.0.11, not held here
CVE-2023-28425medium

Specially crafted MSETNX command can lead to denial-of-service

GHSA-mvmm-4vq6-vw8cFixed in 7.0.10, not held here
CVE-2022-36021medium

Redis string pattern matching can be abused to achieve Denial of Service

GHSA-jr7j-rfj5-8xqvFixed in 6.0.18, not held here
CVE-2023-25155medium

Integer Overflow in several Redis commands can lead to denial of service.

GHSA-x2r7-j9vw-3w83Fixed in 7.0.9, not held here
CVE-2022-35977medium

Integer overflow in the Redis SETRANGE and SORT/SORT_RO commands may result with false OOM panic

GHSA-mrcw-fhw9-fj8jFixed in 7.0.8, not held here
CVE-2023-22458medium

Integer overflow in the Redis HRANDFIELD and ZRANDMEMBER commands may lead to denial-of-service

GHSA-r8w2-2m53-gprjFixed in 6.2.9, not held here
CVE-2022-35951high

Heap overflow in Redis 7.0 XAUTOCLAIM command's COUNT argument.

GHSA-5gc4-76rx-22c9Fixed in 7.0.5, not held here
CVE-2022-31144high

Potential heap overflow in Redis 7.0 XAUTOCLAIM command.

GHSA-96f7-42fg-2jrhFixed in 7.0.4, not held here
GHSA-px78-xgh7-74fwmedium

DEBUG command is dangerous and enabled by default

Fixed in 7.0.0, not held here
CVE-2022-24736low

A Malformed Lua script can crash Redis

GHSA-3qpw-7686-5984Fixed in 7.0.0, not held here
CVE-2022-24735low

Lua scripts can be manipulated to overcome ACL rules

GHSA-647m-2wmq-qmvqFixed in 7.0.0, not held here
CVE-2021-32626high

Lua scripts can overflow the heap-based Lua stack

GHSA-p486-xggp-782cFixed in 6.2.6, not held here
CVE-2021-32627high

Integer overflow issue with Streams

GHSA-f434-69fm-g45vFixed in 6.2.6, not held here
CVE-2021-32628high

Vulnerability in handling large ziplists

GHSA-vw22-qm3h-49prFixed in 6.2.6, not held here
CVE-2021-32672low

Vulnerability in Lua Debugger

GHSA-9mj9-xx53-qmxmFixed in 6.2.6, not held here
CVE-2021-32675high

DoS vulnerability in Redis

GHSA-f6pw-v9gw-v64pFixed in 6.2.6, not held here
CVE-2021-32687high

Integer overflow issue with intsets

GHSA-m3mf-8x9w-r27qFixed in 6.2.6, not held here
CVE-2021-32762high

Integer overflow that can lead to heap overflow in redis-cli, redis-sentinel on some platforms

GHSA-833w-8v3m-8wwrFixed in 6.2.6, not held here
CVE-2021-41099high

Integer overflow issue with strings

GHSA-j3cr-9h5g-6cphFixed in 6.2.6, not held here
CVE-2021-32761high

Integer overflow issues with BITFIELD command on 32-bit systems

GHSA-8wxq-j7rp-g8wjFixed in 5.0.13, not held here
CVE-2021-32625high

Vulnerability in STRALGO LCS

GHSA-46cp-x4x9-6pfqFixed in 6.2.4, not held here
CVE-2021-29477high

Vulnerability in the STRALGO LCS command

GHSA-vqxj-26vj-996gFixed in 6.2.3, not held here
CVE-2021-29478high

Vulnerability in the COPY command for large intsets

GHSA-qh52-crrg-44g3Fixed in 6.2.3, not held here
CVE-2021-21309high

Integer overflow on 32-bit systems

GHSA-hgj8-vff2-7cjfFixed in 6.0.11, not held here