A AegiFlow
HIGHCVSS 7.5

CVE-2025-48367

CVE-2025-48367 updated by NVD

Modified
2026-09-20
Sources
nvd

Summary

Redis is an open source, in-memory database that persists on disk. An unauthenticated connection can cause repeated IP protocol errors, leading to client starvation and, ultimately, a denial of service. This vulnerability is fixed in 8.0.3, 7.4.5, 7.2.10, and 6.2.19.

Affected packages

EcosystemPackageAffected versionsFixed versions
Redisredis[object Object], [object Object], [object Object], [object Object]

References

Includes data from the National Vulnerability Database (NIST). NVD data is in the public domain; this page is not endorsed by NIST.

CVE® is a registered trademark of The MITRE Corporation. CVE content reproduced under the CVE Terms of Use; copyright designation © MITRE.