Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
10.0

CVE-2026-46752: Apache Kvrocks Heap Overflow When Parsing JSON Data

CVE-2026-46752
Summary

Apache Kvrocks versions 2.0.4 through 2.15.0 have a bug that can cause the system to run out of memory when parsing JSON data. This could lead to system crashes or instability. To fix this issue, upgrade to version 2.16.0.

Original title
Redis Lua HEAP overflow in cjson library vulnerability in Apache Kvrocks. This issue affects Apache Kvrocks: from 2.0.4 through 2.15.0. Users are recommended to upgrade to version 2.16.0, which f...
Original description
Redis Lua HEAP overflow in cjson library vulnerability in Apache Kvrocks.

This issue affects Apache Kvrocks: from 2.0.4 through 2.15.0.

Users are recommended to upgrade to version 2.16.0, which fixes the issue.
nvd CVSS4.0 10.0
Vulnerability type
CWE-122 Heap-based Buffer Overflow
Published: 25 Jun 2026 · Updated: 23 Jul 2026 · First seen: 25 Jun 2026