Live data from Hacker News

Redis CVE-2025-49844: Use-After-Free may lead to remote code execution

redis.io

11–15 of 15 posts

Re: Redis CVE-2025-49844: Use-After-Free may lead to remote code execution

#13
post #3

most people use redis on localhost (i hope)

it used to possible to execute redis commands against localhost from the web browser using domain rebinding. but i think redis did something to the protocol to fix this. also, this is only really relevant for developers.

Re: Redis CVE-2025-49844: Use-After-Free may lead to remote code execution

#15

And this is why we need memory safety languages.

Your last three comments are more or less exactly the same thing.

Thank you for showing interest in my profile.

As you see you can’t fault me for being consistent, can you?

Post reply on HN