Context-Inappropriate Capability
Low
- Confidence
- 81% confidence
- Finding
- The clear() command deletes all cache entries matching the prefix and drops the search index without any confirmation, scoping guard, or authorization check. In a shared Redis instance or automation context, accidental or unauthorized invocation can cause denial of service, data loss, and cache poisoning recovery overhead by wiping the semantic cache for all users.
