Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

RediShell: Critical Remote Code Execution Vulnerability (CVE-2025-49844) in Redis, 10 CVSS score

wiz.io | vulnerability | CVE-2025-49844 | #rce | #cloud-security | #vulnerability | #redis | #wiz-research | #cve-2025-49844

Summary

Wiz Research details RediShell (CVE-2025-49844), a Redis RCE rated CVSS 10.0: a 13-year-old use-after-free bug lets an authenticated attacker escape the Lua sandbox and run code on the host.
Published
Collected

original ↗

Related coverage

back