Known Vulnerabilities for Redis-py by Redis
Listed below are 2 of the newest known vulnerabilities associated with "Redis-py" by "Redis".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-108609 json | JeecgBoot through 3.9.5 contains an insecure direct object reference vulnerability that allows authenticated users to read ot... | Not Provided | 2026-10-10 | 2026-10-10 |
| CVE-2026-108608 json | JeecgBoot through 3.9.5 contains an insecure direct object reference vulnerability that allows authenticated users to delete ... | Not Provided | 2026-10-10 | 2026-10-10 |
| CVE-2026-108607 json | JeecgBoot through 3.9.5 contains an insecure direct object reference vulnerability that allows authenticated users to delete ... | Not Provided | 2026-10-10 | 2026-10-10 |
| CVE-2026-108606 json | JeecgBoot through 3.9.5 contains a missing authorization vulnerability in the AiOcrController deleteById handler that allows ... | Not Provided | 2026-10-10 | 2026-10-10 |
| CVE-2026-108605 json | JeecgBoot through 3.9.5 contains a missing authorization vulnerability in the AiOcrController updateById handler that allows ... | Not Provided | 2026-10-10 | 2026-10-10 |
| CVE-2026-107911 json | A type confusion vulnerability in the _read_flags function (src/commands/cmd_dispatcher.c) in FalkorDB before 4.20.0 allows a... | Not Provided | 2026-10-09 | 2026-10-09 |
| CVE-2026-107910 json | An improper authentication vulnerability in the is_authenticated function (src/bolt/bolt_api.c) in FalkorDB before 4.20.0 all... | Not Provided | 2026-10-09 | 2026-10-09 |
| CVE-2026-107177 json | Express Gateway through 1.16.11 contains a hardcoded cryptographic key vulnerability that allows attackers with datastore acc... | Not Provided | 2026-10-07 | 2026-10-07 |
| CVE-2026-106513 json | MISP exposes critical infrastructure settings—specifically the Redis host addresses used by the core application, the ZeroM... | Not Provided | 2026-10-06 | 2026-10-07 |
| CVE-2026-105799 json | LangChain is a framework for building LLM-powered applications. Prior to 1.1.1, @langchain/redis does not escape attacker-con... | Not Provided | 2026-10-06 | 2026-10-06 |