CyberSum logo
HomeAboutRSS
Back

Redis Server Vulnerability

Cyber Security News by CyberSum.net
Published on October 6, 2025 at 12:00 PM
2 sources
A critical security vulnerability has been discovered in Redis Server, allowing authenticated attackers to achieve remote code execution through a use-after-free flaw in the Lua scripting engine, with the vulnerability affecting all versions of Redis that support Lua scripting functionality and having a CVSS score of 10.0.

Sources

1
https://github.com/redis/redis/security/advisories/GHSA-4789-qfc9-5f9q
2
https://gbhackers.com/redis-server-use-after-free-vulnerability/

Also Read

Critical React2Shell Flaw in React and Next.js Allows Remote Code Execution

A severe vulnerability, named React2Shell and tracked as CVE-2025-55182, has been discovered in React Server Components (RSC) Flight protocol. This flaw enables unauthenticated remote code execution by exploiting unsafe deserialization. Affected versions include React 19.x and Next.js 15.x/16.x. Security researcher Lachlan Davidson reported the issue, which has a CVSS score of 10.0. Organizations are urged to apply patches immediately to mitigate risks.

By Cyber Security News by CyberSum.netDecember 5, 2025 at 06:00 PM
CyberSum logo

Stay informed about the latest cyber security developments, incidents, and research. Your trusted source for cyber security news.

Resources

  • About Us
  • Contact
  • Privacy Policy
  • Terms of Service

© 2025 CyberSum. All rights reserved.

Made withfor the security community