CVE-2026-23631: redis-server Lua use-after-free may allow remote code execution

Overview

Severity
N/A
Exploit Status
Not Exploited
Patch Tuesday
2026-May
Released
2026-05-08
Last Updated
2026-06-09
EPSS Score
0.89% (percentile: 54.7%)

Detection & Weaponization (1 sources)

Maturity: Exploit

  • GitHub PoC: 2 repositories

Affected Products (2)

Open Source Software

  • azl3 valkey 8.0.7-1 on Azure Linux 3.0

Other

  • 21421-17084

Revision History

  • 2026-05-08: Information published.
  • 2026-06-03: Information published.
  • 2026-06-09: Information published.