CVE-2026-85522 | valkey-io valkey up to 9.5.4/9.1.0 Slot Migration cluster_migrateslots.c createSlotImportJob job_name out-of-bounds (Issue 4207)

SecurityVulns

A vulnerability classified as problematic was found in valkey-io valkey up to 9.5.4/9.1.0. Affected by this vulnerability is the function createSlotImportJob of the file src/cluster_migrateslots.c of the component Slot Migration. The manipulation of the argument job_name results in out-of-bounds read.

This vulnerability is identified as CVE-2026-85522. The attack can be executed remotely. Additionally, an exploit exists.

Upgrading the affected component is advised.VulDB Recent EntriesRead More