CVE WATCH / VULNERABILITY DETAIL

CVE-2026-7826

CRITICALCVSS 9.1NVD feed

Published 9 October 2026 · tracked since 9 October 2026

Description

A heap-based out-of-bounds read in the BufferSerializerIOv2_ReadBuffer function (src/serializers/serializer_io.c) in FalkorDB before 4.18.4 allows a remote attacker who can issue Redis replication commands (for example, against an instance with no password configured) to cause a denial of service or

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-7826 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-7826

CRITICALCVSS 9.1NVD feed

Published 9 October 2026 · tracked since 9 October 2026

Description

A heap-based out-of-bounds read in the BufferSerializerIOv2_ReadBuffer function (src/serializers/serializer_io.c) in FalkorDB before 4.18.4 allows a remote attacker who can issue Redis replication commands (for example, against an instance with no password configured) to cause a denial of service or

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]