CVE-2026-85219

Summary

Denial-of-Service in Redis module in Thinkst Canary's OpenCanary 0.9.9 allows an unauthenticated remote attacker cause unconstrained memory usage.

Affected Software

VendorProductVersion RangeStatus
Thinkst Applied ResearchOpenCanary0.4 < 0.9.10affected

Weaknesses

  • CWE-770: CWE-770 Allocation of resources without limits or throttling

Workarounds

Disable the Redis module.

References