Critical Flaw Exposes 60,000 Redis Servers to Remote Exploitation
ID: 0d8fe213-73ab-5a36-b49c-59a27bb40e2d
STIX ID: report--0d8fe213-73ab-5a36-b49c-59a27bb40e2d
Feed Name: Infosecurity Magazine (News)
A critical, 10.0-scored vulnerability (CVE-2025-49844, “RediShell”) in Redis’s embedded Lua scripting engine enables authenticated attackers to escape the Lua sandbox and execute arbitrary code; Wiz and Redis disclosed fixes after finding ~330,000 internet-exposed instances (about 60,000 unauthenticated), and administrators are urged to patch immediately, enable auth/restrict access, disable Lua if unused, run non-root, and monitor for suspicious activity to prevent possible credential theft, lateral movement, or deployment of miners/ransomware.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
