All 6 CVE vulnerabilities found in Valkey, with AI-generated Chinese analysis, references, and POCs.
Vendor: Valkey
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-63639 | Valkey: UAF in stream deserialization may lead to remote code execution CWE-416 | 8.8 | High | 2026-08-18 |
| CVE-2026-56684 | Valkey: TLS pending-data processing use-after-free may allow remote code execution CWE-416 | 7.5 | High | 2026-08-18 |
| CVE-2026-27623 | Valkey has Pre-Authentication DOS from malformed RESP request CWE-20 | 7.5 | High | 2026-02-23 |
| CVE-2026-21863 | Malformed Valkey Cluster bus message can lead to Remote DoS CWE-125 | 7.5 | High | 2026-02-23 |
| CVE-2025-67733 | Valkey Affected by RESP Protocol Injection via Lua error_reply CWE-74 | 8.5 | High | 2026-02-23 |
| CVE-2025-49112 | Valkey 数字错误漏洞 CWE-191 | 3.1 | Low | 2025-06-02 |
All 6 known CVE vulnerabilities affecting Valkey with full Chinese analysis, references, and POCs where available.