Out-of-Bounds Read Vulnerability in Redis Affects Unauthenticated Access
CVE-2026-72568
7.1HIGH
What is CVE-2026-72568?
An out-of-bounds read vulnerability exists in Redis version 8.8.1, allowing an unauthenticated attacker to exploit the Redis Cluster Bus port. By sending specially crafted PING messages, attackers can potentially cause a denial of service or expose sensitive information, underscoring the importance of using secure configurations and applying updates promptly.
Affected Version(s)
Redis 0 <= 8.8.1
