Redis.Js is a Node.js client library for Redis, a narrowly scoped component within the broader Redis ecosystem that supports application-level interaction with in-memory data stores. Its observed vulnerability profile clusters around resource-consumption issues and implementation gaps, reflecting the parsing and protocol-handling demands of a client library. Current severity, exploitation status, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Redis.Js over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-29469HIGH Node-redis is a Node.js Redis client. Before version 3.1.1, when a client is in monitoring mode, the regex begin used to detected monitor messages could cause exponential backtrack | Apr 23, 2021 | 7.5 | 25 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Redis.Js.
Media articles that mention a CVE ID that affects a product developed by Redis.Js — matched by CVE ID, not by vendor name.