DragonflyDB Dragonfly through 1.28.2 (fixed in 1.29.0) allows authenticated users to cause a denial of service (daemon crash) via a Lua library command that references a large negative integer.
2025-04-17T18:15:49.073
2025-07-11T16:36:33.623
Analyzed
CVSSv3.1: 3.3 (LOW)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | dragonflydb | dragonfly | < 1.29.0 | Yes |