CVE-2026-88409: Buffer Overflow
Published Sep 21, 2026
·Updated
FalkorDB (Redis module) v4.20.1 to v4.20.4 was discovered to contain a buffer overflow in the DecodeGrBMatrix function (/v19/decodematrix.c). This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.
Affected Software
1 affected component
FalkorDB (Redis module)>=4.20.1<=4.20.4
Event History
Sep 21, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverity
Data Sourced
via NVD·09:17 PM
DescriptionSeverity
Frequently Asked Questions
1
Which releases should be prioritized for remediation?
FalkorDB Redis module versions 4.20.1 through 4.20.4 are identified as affected.
2
What level of access does an attacker need?
The CVSS vector indicates network attack access and low privileges are required. Exploitation involves sending crafted input and can cause a denial of service.