CVE-2025-52935: Dragonflydb Dragonfly

Critical severity, CVSS 9.4. EPSS: 0.4% chance of exploitation in the next 30 days.

Integer Overflow or Wraparound vulnerability in dragonflydb dragonfly (src/redis/lua/struct modules). This vulnerability is associated with program files lua_struct.C. This issue affects dragonfly: 1.30.1, 1.30.0, 1.28.18.

Affected products

Published 2025-06-23. Last modified 2026-06-17.