CVE-2026-85219: Thinkst Applied Research Opencanary

Low severity, CVSS 3.7. EPSS: 0.4% chance of exploitation in the next 30 days.

Denial-of-Service in Redis module in Thinkst Canary's OpenCanary 0.9.9 allows an unauthenticated remote attacker cause unconstrained memory usage.

Affected products

Published 2026-09-21. Last modified 2026-09-22.