CVE-2026-81934

Published: Ago 27, 2026 Last Modified: Ago 27, 2026
ExploitDB:
Other exploit source:
Google Dorks:
CRITICAL 9,2
Source: 9119a7d8-5eab-497f-8521-727c672e3725
Attack Vector: network
Attack Complexity: low
Privileges Required: none
User Interaction: none
Confidentiality: N/A
Integrity: N/A
Availability: N/A
CRITICAL 9,8
Source: 9119a7d8-5eab-497f-8521-727c672e3725
Attack Vector: network
Attack Complexity: low
Privileges Required: none
User Interaction: none
Scope: unchanged
Confidentiality: high
Integrity: high
Availability: high

Description

AI Translation Available

Redis contains a use-after-free vulnerability in the 'tlsProcessPendingData()' function, which handles the TLS pending-data list if Redis is configured with TLS support. A remote, unauthenticated attacker may be able to execute arbitrary commands with the privileges of the Redis server. Fixed in Redis 8.2.9, 8.4.6, 8.6.6, 8.8.2, and 8.10.1.

416

Use After Free

Stable
Common Consequences
Security Scopes Affected:
Integrity Availability Confidentiality
Potential Impacts:
Modify Memory Dos: Crash, Exit, Or Restart Read Memory Execute Unauthorized Code Or Commands
Applicable Platforms
Languages: Memory-Unsafe, C, C++
View CWE Details
https://github.com/redis/redis/commit/6d088c335d5c3ec49a6c28486140b498e70b7834
https://github.com/v12-security/pocs/tree/main/redis/server_ssl
https://raw.githubusercontent.com/redis/redis/8.10/00-RELEASENOTES
https://raw.githubusercontent.com/redis/redis/8.2/00-RELEASENOTES
https://raw.githubusercontent.com/redis/redis/8.4/00-RELEASENOTES
https://raw.githubusercontent.com/redis/redis/8.6/00-RELEASENOTES
https://raw.githubusercontent.com/redis/redis/8.8/00-RELEASENOTES