Risky Bulletin Newsletter
October 08, 2025
Risky Bulletin: Redis vulnerability impacts all versions released in the last 13 years
Presented by
News Editor
The Redis database project released a security update last week to patch a critical vulnerability that can allow remote attackers to run malicious code and take over systems.
The vulnerability is as bad as it gets and impacts all Redis versions released over the past 13 years.
The vulnerability is tracked as CVE-2025-49844, but the Google Wiz team that discovered it calls it RediShell.