PT-2026-65086 · Valkey · Valkey

CVE-2026-56684

·

Published

2026-07-26

·

Updated

2026-09-08

CVSS v3.1

7.5

High

VectorAV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Valkey versions prior to 7.2.14 Valkey versions prior to 8.0.10 Valkey versions prior to 8.1.9 Valkey versions prior to 9.0.5 Valkey versions prior to 9.1.1
Description A use-after-free issue exists when TLS is enabled. The tlsProcessPendingData() function iterates through the pending list, but an authenticated client can trigger a CLIENT KILL command. This causes connTLSClose() to delete the iterator's cached next node, which can lead to a server crash or potentially allow remote code execution.
Recommendations Update to version 7.2.14 Update to version 8.0.10 Update to version 8.1.9 Update to version 9.0.5 Update to version 9.1.1

Exploit

Fix

RCE

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2026:64796
ALSA-2026:64807
AZL-96888
BIT-VALKEY-2026-56684
CVE-2026-56684
GHSA-53MC-F3M3-99VH
OPENSUSE-SU-2026:11381-1
OPENSUSE-SU-2026:21485-1
SUSE-SU-2026:3427-1
SUSE-SU-2026:3483-1

Affected Products

Valkey