SEPTEMBER 29, 2026
Live Feed
Back to database
Case File

CVE-2026-72568

UNKNOWN · CVSS N/A

Source: NVD + CISA KEV + EPSS · Published 2026-08-10 · Last synced 2026-09-09

CyberRota Analysis

AI-Generated

An out-of-bounds read vulnerability in Redis versions up to 8.8.1 allows unauthenticated adjacent attackers to exploit the system by sending a specially crafted PING message, potentially leading to denial of service or information disclosure. The vulnerability arises from improper validation of extension length fields in the cluster bus message parser, which can result in reading beyond the allocated buffer. Organizations using Redis should prioritize patching this vulnerability to mitigate risks associated with unauthorized access and service disruption.

CVE
CVE-2026-72568
Severity
UNKNOWN
CVSS
N/A
EPSS
N/A

Original NVD Description

Rejected reason: Red Hat CNA-LR concluded that this CVE is not valid.