{"id":"CVE-2023-47004","details":"Buffer Overflow vulnerability in Redis RedisGraph v.2.x through v.2.12.8 and fixed in v.2.12.9 allows an attacker to execute arbitrary code via the code logic after valid authentication.","modified":"2026-08-12T14:51:29.242085Z","published":"2023-11-06T00:00:00Z","database_specific":{"cna_assigner":"mitre","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/47xxx/CVE-2023-47004.json"},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/47xxx/CVE-2023-47004.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-47004"},{"type":"REPORT","url":"https://github.com/RedisGraph/RedisGraph/issues/3178"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/redisgraph/redisgraph","events":[{"introduced":"d3c9bf92b83cc7ff5d2e17b75d624295d4d62d9c"},{"fixed":"b6894afedcc0b3380dd8651a6ed47e56bb48da9b"}],"database_specific":{"cpe":"cpe:2.3:a:redislabs:redisgraph:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"v.2.x"},{"fixed":"v.2.12.8"},{"introduced":"2.0.0"},{"fixed":"2.12.9"}],"source":["DESCRIPTION","CPE_RANGE"]}}],"database_specific":{"vanir_signatures_modified":"2026-08-12T14:51:29Z","vanir_signatures":[{"deprecated":false,"digest":{"function_hash":"131347100829225143602134050935760397726","length":331},"id":"CVE-2023-47004-16c816a3","signature_type":"Function","signature_version":"v1","source":"https://github.com/redisgraph/redisgraph/commit/b6894afedcc0b3380dd8651a6ed47e56bb48da9b","target":{"file":"src/execution_plan/ops/op.c","function":"OpBase_PropagateReset"}},{"id":"CVE-2023-47004-4f08da1b","signature_type":"Line","signature_version":"v1","source":"https://github.com/redisgraph/redisgraph/commit/b6894afedcc0b3380dd8651a6ed47e56bb48da9b","target":{"file":"src/execution_plan/ops/op.c"},"deprecated":false,"digest":{"threshold":0.9,"line_hashes":["174243879673421889489411412717855910628","50347943674815831598971986052321526468","214122889479866941231410254755282949956","292140202894790645004500454712669526176"]}}],"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-47004.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"}]}