CVE-2025-26269
CVSS 3.1 Score 3.3 of 10 (low)
Details
Published Apr 17, 2025
Updated: Apr 23, 2025
CWE ID 191
Summary
CVE-2025-26269 is a vulnerability affecting DragonflyDB Dragonfly versions up to 1.28.2. This issue allows authenticated users to cause a denial of service (DoS) by executing a Lua library command with a large negative integer. The result is a daemon crash, making the database unavailable until it is restarted. This vulnerability was addressed in version 1.29.0.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Opera Dragonfly