Valkey是Valkey开源的一个灵活的分布式键值数据库。 Valkey 9.0.2之前版本、8.1.6之前版本、8.0.7之前版本和7.2.12之前版本存在注入漏洞,该漏洞源于Lua脚本的错误处理代码未正确处理空字符,可能导致数据损坏或被篡改。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | None | https://github.com/JYlab/CVE-2025-67733-RESP-Injection-PoC | POC Details |
| 2 | Redis/Valkey RESP Injection PoC (CVE-2025-67733) | https://github.com/JYlab/CVE-2025-67733 | POC Details |
No public POC found.
Login to generate AI POC| CVE-2026-21863 | 7.5 HIGH | Malformed Valkey Cluster bus message can lead to Remote DoS |
| CVE-2026-27623 | 7.5 HIGH | Valkey has Pre-Authentication DOS from malformed RESP request |
No comments yet