google / google/tsunami-security-scanner-plugins

PRP: Redis CVE-2025-49844 (RediShell) RCE

Open
#742 7 comments 0 reactions 1 assignee Claimed by @OccamsXor View on GitHub
Contributor main CVE PRP:Accepted
Dominant language
Java
Stars
1k
Forks
222
Avg merge
5d 3h
Merged PRs (30d)
1

Description

- **Identifier of the vulnerability**: CVE-2025-49844 (RediShell)
- **Affected software**: Redis
- **Type of vulnerability**: RCE
- **Requires authentication**: Yes (However the official Redis container, by default, does not require authentication.)
- **Language you would use for writing the plugin**: Python (Not sure it will be templated)
- **Resources**:
https://www.wiz.io/blog/wiz-research-redis-rce-cve-2025-49844

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.