RediShell: Critical Remote Code Execution Vulnerability (CVE-2025-49844) in Redis, 10 CVSS score
wiz.io | vulnerability | CVE-2025-49844 | #rce | #cloud-security | #vulnerability | #redis | #wiz-research | #cve-2025-49844
Summary
Wiz Research details RediShell (CVE-2025-49844), a Redis RCE rated CVSS 10.0: a 13-year-old use-after-free bug lets an authenticated attacker escape the Lua sandbox and run code on the host.
- Published
- Collected
Skip to content