Known Vulnerabilities for Redis by Redislabs

Listed below are 10 of the newest known vulnerabilities associated with "Redis" by "Redislabs".

These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.

Data on known vulnerable versions is also displayed based on information from known CPEs

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-34163 FastGPT is an AI Agent building platform. Prior to version 4.14.9.5, FastGPT's MCP (Model Context Protocol) tools endpoints (... Not Provided 2026-03-31 2026-03-31
CVE-2026-22744 In RedisFilterExpressionConverter of spring-ai-redis-store, when a user-controlled string is passed as a filter value for ... Not Provided 2026-03-27 2026-03-27
CVE-2026-4860 A security flaw has been discovered in 648540858 wvp-GB28181-pro up to 2.7.4. This affects the function GenericFastJsonRedisS... Not Provided 2026-03-26 2026-03-26
CVE-2021-32761 Redis is an in-memory database that persists on disk. A vulnerability involving out-of-bounds read and integer overflow to bu... 7.5 - HIGH 2021-07-21 2023-11-07
CVE-2021-32672 Redis is an open source, in-memory database that persists on disk. When using the Redis Lua Debugger, users can send malforme... 4.3 - MEDIUM 2021-10-04 2023-11-07
CVE-2021-32625 Redis is an open source (BSD licensed), in-memory data structure store, used as a database, cache, and message broker. An int... 8.8 - HIGH 2021-06-02 2023-11-07
CVE-2021-29478 Redis is an open source (BSD licensed), in-memory data structure store, used as a database, cache, and message broker. An int... 8.8 - HIGH 2021-05-04 2023-11-07
CVE-2021-29477 Redis is an open source (BSD licensed), in-memory data structure store, used as a database, cache, and message broker. An int... 8.8 - HIGH 2021-05-04 2023-11-07
CVE-2021-21309 Redis is an open-source, in-memory database that persists on disk. In affected versions of Redis an integer overflow bug in 3... 8.8 - HIGH 2021-02-26 2022-10-19
CVE-2021-3470 A heap overflow issue was found in Redis in versions before 5.0.10, before 6.0.9 and before 6.2.0 when using a heap allocator... 5.3 - MEDIUM 2021-03-31 2021-04-05

Known Affected Configurations (CPE V2.3)

Type Vendor Product Version Update Edition Language
ApplicationRedislabsRedis6.2.1AllAllAll
ApplicationRedislabsRedis6.2.0-AllAll
ApplicationRedislabsRedis6.2.0rc1AllAll
ApplicationRedislabsRedis6.2.0rc2AllAll
ApplicationRedislabsRedis6.2.0rc3AllAll
ApplicationRedislabsRedis6.0.9AllAllAll
ApplicationRedislabsRedis6.0.8AllAllAll
ApplicationRedislabsRedis6.0.7AllAllAll
ApplicationRedislabsRedis6.0.6AllAllAll
ApplicationRedislabsRedis6.0.5AllAllAll
ApplicationRedislabsRedis6.0.4AllAllAll
ApplicationRedislabsRedis6.0.3AllAllAll
ApplicationRedislabsRedis6.0.2AllAllAll
ApplicationRedislabsRedis6.0.12AllAllAll
ApplicationRedislabsRedis6.0.11AllAllAll
ApplicationRedislabsRedis6.0.10AllAllAll
ApplicationRedislabsRedis6.0.1AllAllAll
ApplicationRedislabsRedis6.0.0AllAllAll
ApplicationRedislabsRedis6.0-AllAll
ApplicationRedislabsRedis6.0rc1AllAll
© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

CVE.report and Source URL Uptime Status status.cve.report