S4E just found a medium-severity finding from vulnerable javascript library scanner
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
🔴
CISA Known Exploited Vulnerability
This CVE is actively exploited in the wild. CISA mandates federal agencies to patch immediately.
CVE

CVE-2022-0543

10.0
CVSScritical
Exploitable remotely over the internet · no authentication required.
Description

It was discovered, that redis, a persistent key-value database, due to a packaging issue, is prone to a (Debian-specific) Lua sandbox escape, which could result in remote code execution.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
redis
Updated Sep 18, 2026View on NVD →
S4E scanner

CVE-2022-0543 Scanner

Targets the Lua scripting engine in Debian-packaged Redis, allowing an attacker to escape the sandbox and execute arbitrary system commands.

Used 2.3k times · 5.9k assets checked · domain, ipv4, subdomain

Monitor this CVE on your assets

S4E maps published CVEs to scanners and forecasts the next disclosure window for your stack.

Create a free account →