CYBERHAWK / CVE / CVE-2026-25588
CVE-2026-25588
RedisTimeSeries
HIGH
CVSS 8.8
vibe
oss
The flaw
RESTORE command validation bypass in RedisTimeSeries module may lead to RCE via crafted payloads.
What to do
Update RedisTimeSeries to version 1.12.14 or restrict RESTORE command access
References
In the news
- Redis Security Flaws Expose Servers to Remote Code Execution Risksgbhackers.com · 2026-05-07
- Critical Redis Vulnerabilities Enable Remote Code Execution Attackscyberpress.org · 2026-05-07
- Critical Redis Vulnerabilities Enables Remote Code Execution AttacksCyberSecurityNews · 2026-05-07