See how falkordb compares to other vendors in security performance
FalkorDB (Redis module) v4.20.1 to v4.20.4 was discovered to contain a stack overflow in the ValidateUnionClauses function (/ast/astvalidations.c). This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.
Improper error handling in the GRAPH.EFFECT component (/effects/effectsapply.c) of FalkorDB (Redis module) v4.20.1 leads to a Denial of Service (DoS) within the application.
The graph.UDF in FalkorDB (Redis module) v4.20.1 to v4.20.4 is not registered as a write command, leading to unexpected behavior within the application.
An out-of-bounds read in the nodetokencount/relationtokencount component of FalkorDB (Redis module) v4.20.1 to v4.20.4 allows attackers to cause a Denial of Service (DoS) via a crafted input.
An integer overflow in the BulkInsertReadProperty component (/bulkinsert.c) of FalkorDB (Redis module) v4.20.1 allows attackers to cause a Denial of Service (DoS) via a crafted input.
FalkorDB Browser 1.9.3 contains an unauthenticated path traversal vulnerability in the file upload API that allows remote attackers to write arbitrary files and achieve remote code execution.