Get the latest tech news

RediShell: Critical remote code execution vulnerability in Redis


A 13‑year Redis flaw (CVE‑2025‑49844) allows attackers to escape Lua sandbox and run code on hosts. See Wiz Research’s analysis and mitigations.

None

Get the Android app

Or read this on Hacker News

Read more on:

Photo of redis

redis

Photo of RediShell

RediShell

Related news:

News photo

Level-10 vuln lurking in Redis source code for 13 years could allow remote code execution

News photo

Redis warns of critical flaw impacting thousands of instances

News photo

Fork yeah: Valkey 9 sharpens edge against Redis