CVE-2026-85219
3.7
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
Summary
Denial-of-Service in Redis module in Thinkst Canary's OpenCanary 0.9.9 allows an unauthenticated remote attacker cause unconstrained memory usage.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Thinkst Applied Research | OpenCanary | 0.4 < 0.9.10 | affected |
Weaknesses
- CWE-770: CWE-770 Allocation of resources without limits or throttling
Workarounds
Disable the Redis module.
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.