CVE-2026-66054
- EPSS 0.43%
- Veröffentlicht 02.10.2026 12:58:05
- Zuletzt bearbeitet 03.10.2026 16:16:37
Allocation of Resources Without Limits or Throttling, Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Apache Thrift C++ bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrad...
CVE-2026-61374
- EPSS 0.24%
- Veröffentlicht 02.10.2026 12:53:00
- Zuletzt bearbeitet 03.10.2026 16:16:37
Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Java bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
CVE-2026-63772
- EPSS 0.43%
- Veröffentlicht 02.10.2026 12:52:07
- Zuletzt bearbeitet 03.10.2026 16:16:37
Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift go bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
CVE-2026-66055
- EPSS 0.26%
- Veröffentlicht 02.10.2026 12:49:40
- Zuletzt bearbeitet 03.10.2026 16:16:37
Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift C++, Java, Go, netstd, Python and Delphi bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fi...
CVE-2026-66081
- EPSS 0.43%
- Veröffentlicht 02.10.2026 12:33:13
- Zuletzt bearbeitet 02.10.2026 17:17:07
Access of Uninitialized Pointer vulnerability in Apache Thrift c_glib bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
CVE-2026-66331
- EPSS 0.43%
- Veröffentlicht 02.10.2026 12:32:46
- Zuletzt bearbeitet 03.10.2026 16:16:38
Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Delphi bindings buffered transport. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
CVE-2026-66837
- EPSS 0.29%
- Veröffentlicht 02.10.2026 12:29:09
- Zuletzt bearbeitet 02.10.2026 17:17:07
Stack-based Buffer Overflow, Integer Overflow or Wraparound vulnerability in Apache Thrift php bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
CVE-2026-66858
- EPSS 0.26%
- Veröffentlicht 02.10.2026 12:27:31
- Zuletzt bearbeitet 02.10.2026 17:17:07
The protocol skip routine in several Apache Thrift bindings did not apply the binding's recursion limit, so a message that nests unknown fields deeply enough can exhaust the stack. Affected: the Python C++ accelerator (the pure-Python protocols are n...
CVE-2026-66859
- EPSS 0.43%
- Veröffentlicht 02.10.2026 12:23:48
- Zuletzt bearbeitet 02.10.2026 17:17:07
NULL Pointer Dereference, Use of Uninitialized Variable vulnerability in Apache Thrift c_glib bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
CVE-2026-83632
- EPSS 0.38%
- Veröffentlicht 02.10.2026 12:22:23
- Zuletzt bearbeitet 02.10.2026 17:17:07
Allocation of resources without limits or throttling, Integer overflow or wraparound, Heap-based buffer overflow vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0...