CVE-2026-25243: redis-server RESTORE invalid memory access may allow remote code execution

Overview

Severity
N/A
Exploit Status
Not Exploited
Patch Tuesday
2026-May
Released
2026-05-08
Last Updated
2026-06-09
EPSS Score
3.30% (percentile: 87.3%)

Detection & Weaponization (1 sources)

Maturity: Exploit

  • GitHub PoC: 3 repositories

Affected Products (2)

Other

  • 21421-17084

Open Source Software

  • azl3 valkey 8.0.7-1 on Azure Linux 3.0

Revision History

  • 2026-05-08: Information published.
  • 2026-06-03: Information published.
  • 2026-06-09: Information published.