CVE-2023-46852: Memcached

High severity, CVSS 7.5. EPSS: 0.8% chance of exploitation in the next 30 days.

In Memcached before 1.6.22, a buffer overflow exists when processing multiget requests in proxy mode, if there are many spaces after the "get" substring.

Affected products

  • Memcached Memcached: before 1.6.22 (fixed in 1.6.22)

Published 2023-10-27. Last modified 2026-06-17.