← Back

Redisgraph

redisgraph

Vendor: Redislabs • 3 CVEs

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Redislabs
1Redisgraph
Nov 21, 2024
Nov 16, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
An issue in RedisGraph v.2.12.10 allows an attacker to execute arbitrary code and cause a denial of service via a crafted string in DataBlock_ItemIsDeleted.
1Redislabs
1Redisgraph
Apr 29, 2025
Nov 6, 2023
N/A· v4
8.8 HIGH· v3
N/A· v2
Buffer Overflow vulnerability in Redis RedisGraph v.2.x through v.2.12.8 and fixed in v.2.12.9 allows an attacker to execute arbitrary code via the code logic after valid authentication.
1Redislabs
1Redisgraph
Nov 21, 2024
Dec 23, 2020
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
RedisGraph 2.x through 2.2.11 has a NULL Pointer Dereference that leads to a server crash because it mishandles an unquoted string, such as an alias that has not yet been introduced.