Description
An out-of-bounds read in the node_token_count/relation_token_count component of FalkorDB (Redis module) v4.20.1 to v4.20.4 allows attackers to cause a Denial of Service (DoS) via a crafted input.
Published: 2026-09-21
Score: 7.5 High
EPSS: n/a
KEV: No
Impact: Denial of Service
Action: Immediate Patch
AI Analysis

Impact

The vulnerability is an out-of-bounds read in the node_token_count/relation_token_count component of FalkorDB (Redis module). When an attacker provides crafted input, the module attempts to read beyond allocated memory, causing a crash that results in a denial of service. No remote code execution or data exfiltration is possible as described. The impact is a loss of availability rather than confidentiality or integrity. The weakness is an incorrect buffer boundary check and is classified as a buffer overread.

Affected Systems

Versions of FalkorDB from 4.20.1 through 4.20.4 are affected. The issue appears in the node_token_count and relation_token_count components of the Redis module. No other vendors or products are mentioned in the CVE data.

Risk and Exploitability

The CVSS score of 7.5 indicates a high severity of the vulnerability. The EPSS score is not available, so the exploitation probability cannot be quantified, and the vulnerability is not listed in CISA KEV. The likely attack vector is through a crafted Redis command sent to a FalkorDB instance; an attacker with network or application access can send the vulnerable input. If successful, the module will crash, resulting in a denial of service that affects the entire FalkorDB service. No privilege escalation or data compromise is reported.

Generated by OpenCVE AI on September 21, 2026 at 23:27 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade FalkorDB to version 4.20.5 or later where the buffer boundary check has been fixed.
  • If an upgrade cannot be performed immediately, restrict the use of node_token_count/relation_token_count by limiting the size of input data and applying input validation to reject malformed token counts.
  • Monitor FalkorDB logs for abnormal crashes or memory errors and restart the service promptly to restore availability.

Generated by OpenCVE AI on September 21, 2026 at 23:27 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 21 Sep 2026 23:45:00 +0000

Type Values Removed Values Added
Title Out‑of‑Bounds Read Causing Denial of Service in FalkorDB Node and Relation Token Counting
Weaknesses CWE-125

Mon, 21 Sep 2026 21:15:00 +0000

Type Values Removed Values Added
Description An out-of-bounds read in the node_token_count/relation_token_count component of FalkorDB (Redis module) v4.20.1 to v4.20.4 allows attackers to cause a Denial of Service (DoS) via a crafted input.
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AC:L/AV:N/A:H/C:N/I:N/PR:N/S:U/UI:N'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-09-21T21:02:59.301Z

Reserved: 2026-09-10T00:00:00.000Z

Link: CVE-2026-88407

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-21T21:17:14.860

Modified: 2026-09-21T21:17:14.860

Link: CVE-2026-88407

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-21T23:30:18Z

Weaknesses