CVE-2025-26269 Information

Description

DragonflyDB Dragonfly through 1.28.2 allows authenticated users to cause a denial of service (daemon crash) via a Lua library command that references a large negative integer.

Reference

https://github.com/dragonflydb/dragonfly/commit/4612aec9a78e3f604e6fb19bee51acde89723308 https://github.com/dragonflydb/dragonfly/issues/4468

Share on: