CVETodo[verified]@CveTodoDisclosure
The post announces CVE‑2025‑67733, describing a Lua script handling flaw in Valkey that permits data injection and corruption, but it does not mention patches, exploits, or active attacks.
ThreatCluster[verified]@threatclusterPatch
Two critical DoS CVEs in Valkey affecting Fedora 42‑43 have public PoCs and have been fixed in recent updates, urging users to patch immediately.
cPanel@cPanelPatch
EasyApache 4 v25.49 releases patches for CVE-2026-21863 (remote DoS) and CVE-2025-67733 (RESP protocol injection), addressing the specified vulnerabilities.
Ferramentas Linux@Cezar_H_LinuxPatch
The note informs about two critical Redis CVEs on Debian and recommends checking versions, applying available patches, or using ACL/iptables mitigations, with no evidence of PoC, active exploitation, or false positives.
cPanel@cPanelPatch
EasyApache 4 v25.49 addresses CVE‑2026‑21863 and CVE‑2025‑67733 with new Valkey updates, including brief technical details but no exploitation evidence or PoC.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
A Lua script injection vulnerability (CVE-2025-67733) affecting Valkey versions before 9.0.2 has been disclosed, with no PoC, exploit, or patch details provided.
CVEFind.com@CveFindComPatch
Valkey database CVE-2025-67733 permits response injection, compromising data integrity; the advisory lists specific patched versions to mitigate the issue.
The Hacker Wire@TheHackerWireDisclosure
Valkey database versions prior to 9.0.2, 8.1.6, 8.0.7, and 7.2.12 are vulnerable to scripting command injection that allows arbitrary information injection into responses; no PoC, exploit, or patch details are provided.