CVE-2026-88411: High severity FalkorDB Redis module vulnerability
Published Sep 21, 2026
·Updated
Improper error handling in the GRAPH.EFFECT component (/effects/effectsapply.c) of FalkorDB (Redis module) v4.20.1 leads to a Denial of Service (DoS) within the application.
Affected Software
1 affected component
FalkorDB Redis module=4.20.1
Event History
Sep 21, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverity
Data Sourced
via NVD·09:17 PM
DescriptionSeverity
Frequently Asked Questions
1
What access does an attacker need to trigger the denial of service?
The supplied vector indicates network-reachable exploitation with no privileges or user interaction required. An attacker would need to be able to send requests to the FalkorDB Redis module.
2
What is the impact on confidentiality or data integrity?
The provided impact metrics indicate high availability impact, with no confidentiality or integrity impact. The reported outcome is a denial of service within the application.
3
Which version is identified as affected?
The vulnerability description identifies FalkorDB Redis module version 4.20.1. No other affected or fixed versions are provided.