The Redis Wrapper Project maintains a narrowly scoped wrapper utility around the Redis in-memory data store, with its vulnerability exposure centered on a single product. The observed weakness involves deserialization of untrusted data, a characteristic risk in wrapper and marshaling layers that bridge external input to underlying services; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Redis Wrapper Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-17206CRITICAL Uncontrolled deserialization of a pickled object in models.py in Frost Ming rediswrapper (aka Redis Wrapper) before 0.3.0 allows attackers to execute arbitrary scripts. | Oct 5, 2019 | 9.8 | 31 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Redis Wrapper Project.
Media articles that mention a CVE ID that affects a product developed by Redis Wrapper Project — matched by CVE ID, not by vendor name.