CYBERHAWK / CVE / CVE-2026-25589
CVE-2026-25589
RedisBloom
HIGH
CVSS 8.8
vibe
oss
The flaw
RESTORE command validation bypass in RedisBloom module may lead to RCE via crafted payloads.
What to do
Update RedisBloom to version 2.8.20 or restrict RESTORE command access
References
In the news
- Redis Security Flaws Expose Servers to Remote Code Execution Risksgbhackers.com · 2026-05-07
- Critical Redis Vulnerabilities Enable Remote Code Execution Attackscyberpress.org · 2026-05-07
- Critical Redis Vulnerabilities Enables Remote Code Execution AttacksCyberSecurityNews · 2026-05-07