Critical Redis Vulnerability (CVSS 10.0) Enables Remote Code Execution
394/68 Thursday, October 9, 2025 Redis, the developer of the popular in-memory database software, has disclosed a critical vulnerability tracked as CVE-2025-49844, also known as “RediShell.” The flaw, which received the maximum CVSS score of 10.0, is a Use-After-Free (UAF) issue in Redis’s Lua Scripting engine that has existed in the source code for over […]
