Aerospike Server Aerospike Server

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Aerospike Server.

By the Year

In 2026 there have been 0 vulnerabilities in Aerospike Server. Aerospike Server did not have any published security vulnerabilities last year.

Year Vulnerabilities Average Score
2026 0 0.00
2025 0 0.00
2024 0 0.00
2023 0 0.00
2022 0 0.00
2021 0 0.00
2020 1 9.80

It may take a day or so for new Aerospike Server vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Aerospike Server Security Vulnerabilities

Aerospike Community Edition 4.9.0.5
CVE-2020-13151 9.8 - Critical - August 05, 2020

Aerospike Community Edition 4.9.0.5 allows for unauthenticated submission and execution of user-defined functions (UDFs), written in Lua, as part of a database query. It attempts to restrict code execution by disabling os.execute() calls, but this is insufficient. Anyone with network access can use a crafted UDF to execute arbitrary OS commands on all nodes of the cluster at the permission level of the user running the Aerospike service.

Shell injection

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Aerospike Server or by Aerospike? Click the Watch button to subscribe.

Aerospike
Vendor

subscribe