Known vulnerabilities in Redis
Vendor:
Salvatore Sanfilippo
Software:
Redis
Software CPE:
cpe:2.3:a:salvatore_sanfilippo:redis:*:*:*:*:*:*:*:*
Website:
https://github.com/antirez
Total vulnerabilities:
11
Public exploits:
2
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.4
Breakdown by Severity Chart
7.0.9
7.0.5
7.0.4
7.0.3
7.0.2
7.0.1
7.0-rc3
7.0-rc2
7.0-rc1
7.0.0
6.2.7
5.0.14
6.0.16
6.2.6
5.0.13
6.0.15
6.2.5
6.0.14
6.2.4
6.0.13
6.2.3
6.2.2
5.0.12
6.0.12
6.2.1
6.0.11
5.0.11
6.2.0
6.0.10
5.0.10
6.0.9
6.0.8
6.0.7
6.0.6
6.0.5
6.0.4
6.0.3
6.0.2
6.0.1
6.0.0
5.0.9
5.0.8
5.0.7
5.0.6
5.0.5
5.0.4
5.0.3
5.0.2
5.0.1
5.0.0
4.0.14
4.0.13
4.0.12
4.0.11
3.2.13
3.2.11
3.2.10
3.2.9
3.2.8
3.2.7
3.2.6
3.2.5
3.2.4
3.2.3
3.2.2
3.2.1
3.2.0
3.0.7
3.0.6
3.0.5
3.0.4
3.0.3
3.0.2
3.0.1
3.0.0
2.8.24
2.8.23
2.8.22
2.8.21
2.8.20
2.8.19
2.8.18
2.8.17
2.8.16
2.8.15
2.8.14
2.8.13
2.8.12
2.8.11
2.8.10
2.8.9
2.8.8
2.8.7
2.8.6
2.8.5
2.8.4
2.8.3
2.8.2
2.8.1
2.8.0
2.6.17
2.6.16
2.6.15
2.6.14
2.6.13
2.6.12
2.6.11
2.6.10
2.6.9
2.6.8
2.6.7
2.6.6
2.6.5
2.6.4
2.6.3
2.6.2
2.6.1
2.6.0
2.4.18
2.4.17
2.4.16
2.4.15
2.4.14
2.4.13
2.4.12
2.4.11
2.4.10
2.4.9
2.4.8
2.4.7
2.4.6
2.4.5
2.4.4
2.4.3
2.4.2
2.4.1
2.4.0
2.2.15
2.2.14
2.2.13
2.2.12
2.2.11
2.2.10
2.2.9
2.2.8
2.2.7
2.2.6
2.2.5
2.2.4
2.2.3
2.2.2
2.2.1
2.2.0
2.0.5
2.0.4
2.0.3
2.0.2
2.0.1
2.0.0
1.3.12
1.3.11
1.3.10
1.3.9
1.3.8
1.3.7
1.3.6
5.0
4.0.9
4.0.8
4.0.7
4.0.6
4.0.5
4.0.4
4.0.3
4.0.2
4.0.1
4.0.0
5.0 RC3
5.0 RC2
4.0.10
3.2.12
Vulnerabilities (11)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU67640 - Integer overflow CVE-2022-35951 |
CWE-190 | Low | 7.0.5 | 26.09.2022 |
SB2022092612 SB2022092953 SB2023011835 and 1 more |
||
| #VU62693 - Improper Control of Generation of Code ('Code Injection') CVE-2022-24735 |
CWE-94 | Medium | 6.2.7, 7.0.0 | 29.04.2022 |
SB2022042901 SB2022060701 SB2022071948 and 14 more |
||
| #VU62692 - NULL Pointer Dereference CVE-2022-24736 |
CWE-476 | Medium | 6.2.7, 7.0.0 | 29.04.2022 |
SB2022042901 SB2022060701 SB2022092953 and 15 more |
||
| #VU55185 - Integer overflow CVE-2021-32761 |
CWE-190 | High | 5.0.13, 6.0.15, 6.2.5 | 21.07.2021 |
SB2021072166 SB2021110811 SB2022092953 and 3 more |
||
| #VU53726 - Integer overflow CVE-2021-32625 |
CWE-190 | High | 6.0.14, 6.2.4 | 01.06.2021 |
SB2021060145 SB2021060146 SB2021071223 and 3 more |
||
| #VU30255 - Improper input validation CVE-2020-14147 |
CWE-20 | Medium | 6.0.3 | 15.06.2020 |
SB2020061528 SB2020072308 SB2020072309 and 4 more |
||
| #VU19168 - Stack-based buffer overflow CVE-2019-10193 |
CWE-121 | Medium | 3.2.13, 4.0.14, 5.0.4 | 14.07.2019 |
SB2019071109 SB2019071110 SB2019080804 and 5 more |
||
| #VU19167 - Heap-based Buffer Overflow CVE-2019-10192 |
CWE-122 | Medium | 3.2.13, 4.0.14, 5.0.4 | 14.07.2019 |
SB2019071109 SB2019071110 SB2019080804 and 9 more |
||
| #VU13401 - Buffer overflow CVE-2018-12326 |
CWE-120 | Low | 4.0.10, 5.0 RC3 | 19.06.2018 |
SB2018062020 SB2019011612 SB2019011614 and 1 more |
||
| #VU13402 - Type conversion CVE-2018-12453 |
CWE-704 | Low | - | 19.06.2018 |
SB2018062020 |
||
| #VU31401 - Security Features CVE-2016-10517 |
CWE-254 | Medium | 3.2.7 | 24.10.2017 |
SB2017102414 |