Known vulnerabilities in Redis 6.0.7

Vendor: Redis Labs
Software: Redis
Version: 6.0.7
Software CPE: cpe:2.3:a:redis_labs:redis:*:*:*:*:*:*:*:*
Total vulnerabilities: 28
Public exploits: 7
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Redis version 6.0.7 Redis 6.0.7 is affected by 28 vulnerabilities: 7 high, 18 medium, 3 low Critical High Medium Low

Vulnerabilities (28)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU116641 - Improper Authentication
CVE-2025-46818
CWE-287 Medium
Public exploit available
No
6.2.20, 7.2.11, 7.4.6, 8.0.4, 8.2.2 07.10.2025 SB2025100706
SB2025100709
SB2025100710
and 38 more
#VU116640 - Out-of-bounds read
CVE-2025-46819
CWE-125 Medium
Public exploit available
No
6.2.20, 7.2.11, 7.4.6, 8.0.4, 8.2.2 07.10.2025 SB2025100706
SB2025100709
SB2025100710
and 38 more
#VU116639 - Integer overflow
CVE-2025-46817
CWE-190 High
Public exploit available
No
6.2.20, 7.2.11, 7.4.6, 8.0.4, 8.2.2 07.10.2025 SB2025100706
SB2025100709
SB2025100710
and 45 more
#VU116609 - Use After Free
CVE-2025-49844
CWE-416 Medium
Public exploit available
No
6.2.20, 7.2.11, 7.4.6, 8.0.4, 8.2.2 06.10.2025 SB2025100629
SB2025100633
SB2025100709
and 56 more
#VU112337 - Resource Management Errors
CVE-2025-48367
CWE-399 Medium
No
No
6.2.19, 7.2.10, 7.4.5, 8.0.3 07.07.2025 SB2025070725
SB20250716110
SB20250716111
and 31 more
#VU112336 - Out-of-bounds write
CVE-2025-32023
CWE-787 Medium
Public exploit available
No
6.2.19, 7.2.10, 7.4.5, 8.0.3 07.07.2025 SB2025070725
SB20250716110
SB20250716111
and 32 more
#VU107885 - Resource Management Errors
CVE-2025-21605
CWE-399 Medium
No
No
6.2.18, 7.2.8, 7.4.3 23.04.2025 SB2025042342
SB2025042455
SB2025042456
and 33 more
#VU102383 - Use After Free
CVE-2024-46981
CWE-416 Medium
Public exploit available
No
6.2.17, 7.2.7, 7.4.2 06.01.2025 SB2025010646
SB2025010647
SB2025010901
and 39 more
#VU97972 - Improper input validation
CVE-2024-31228
CWE-20 Medium
No
No
6.2.16, 7.2.6, 7.4.1 02.10.2024 SB2024100272
SB2024100323
SB2024100324
and 31 more
#VU97970 - Stack-based buffer overflow
CVE-2024-31449
CWE-121 Medium
No
No
6.2.16, 7.2.6, 7.4.1 02.10.2024 SB2024100272
SB2024100323
SB2024100324
and 33 more
#VU82200 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2023-45145
CWE-362 Low
No
No
6.2.14, 7.0.14, 7.2.2 18.10.2023 SB2023101841
SB2023101848
SB2023101849
and 30 more
#VU78506 - Heap-based Buffer Overflow
CVE-2022-24834
CWE-122 Medium
Public exploit available
No
6.0.20, 6.2.13, 7.0.12 21.07.2023 SB2023072126
SB2023072127
SB2023072128
and 21 more
#VU75177 - Improper input validation
CVE-2023-28856
CWE-20 Medium
No
No
6.0.19, 6.2.12, 7.0.11 17.04.2023 SB2023041725
SB2023050823
SB2023052621
and 19 more
#VU72649 - Integer overflow
CVE-2023-25155
CWE-190 Low
No
No
6.0.18, 6.2.11, 7.0.9 01.03.2023 SB2023030105
SB2023031014
SB2023031036
and 20 more
#VU72634 - Resource exhaustion
CVE-2022-36021
CWE-400 Medium
No
No
6.0.18, 6.2.11, 7.0.9 28.02.2023 SB2023022869
SB2023031014
SB2023031036
and 17 more
#VU71193 - Integer overflow
CVE-2023-22458
CWE-190 Medium
No
No
6.2.9, 7.0.8 16.01.2023 SB2023011657
SB2023020740
SB2023053119
and 8 more
#VU71192 - Integer overflow
CVE-2022-35977
CWE-190 Medium
No
No
6.0.17, 6.2.9, 7.0.8 16.01.2023 SB2023011657
SB2023020661
SB2023020740
and 17 more
#VU57035 - Out-of-bounds read
CVE-2021-32672
CWE-125 Low
No
No
5.0.14, 6.0.16, 6.2.6 04.10.2021 SB2021100404
SB2021102109
SB2021102116
and 10 more
#VU57034 - Improper input validation
CVE-2021-32675
CWE-20 Medium
No
No
5.0.14, 6.0.16, 6.2.6 04.10.2021 SB2021100404
SB2021102001
SB2021102109
and 24 more
#VU57033 - Integer overflow
CVE-2021-32627
CWE-190 High
No
No
5.0.14, 6.0.16, 6.2.6 04.10.2021 SB2021100404
SB2021102001
SB2021102109
and 22 more


Showing elements 1 - 20 out of 28