CVE-2026-83663
- EPSS 0.43%
- Veröffentlicht 02.10.2026 12:18:16
- Zuletzt bearbeitet 02.10.2026 18:17:05
Uncontrolled Recursion vulnerability in Apache Thrift go bindings. Both Go transports satisfy a read out of a buffered frame and, when that frame yields no payload bytes, read the next frame and call `Read` again instead of looping. A peer produce...
CVE-2026-94653
- EPSS 0.43%
- Veröffentlicht 02.10.2026 12:17:24
- Zuletzt bearbeitet 05.10.2026 17:17:18
Inefficient Algorithmic Complexity vulnerability in Apache Thrift PHP bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
CVE-2026-94652
- EPSS 0.43%
- Veröffentlicht 02.10.2026 12:17:23
- Zuletzt bearbeitet 05.10.2026 17:17:18
Missing release of memory after effective lifetime vulnerability in Apache Thrift c++ bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
CVE-2026-94646
- EPSS 0.46%
- Veröffentlicht 02.10.2026 12:17:23
- Zuletzt bearbeitet 02.10.2026 14:30:28
Uncaught exception, Improper validation of specified quantity in input, Improperly controlled modification of object prototype attributes ('prototype pollution') vulnerability in Apache Thrift nodejs bindings. This issue affects Apache Thrift: bef...
CVE-2026-94648
- EPSS 0.43%
- Veröffentlicht 02.10.2026 12:17:23
- Zuletzt bearbeitet 05.10.2026 17:17:17
Allocation of resources without limits or throttling vulnerability in Apache Thrift dart bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
CVE-2026-83745
- EPSS 0.43%
- Veröffentlicht 02.10.2026 12:16:15
- Zuletzt bearbeitet 02.10.2026 18:17:05
Memory allocation with excessive size value, Improper handling of length parameter inconsistency vulnerability in Apache Thrift nodejs and D lang bindings. Both bindings' WebSocket server transports read the payload length out of the frame header a...
CVE-2026-85476
- EPSS 0.41%
- Veröffentlicht 02.10.2026 12:12:45
- Zuletzt bearbeitet 02.10.2026 18:17:06
Loop with unreachable exit condition ('infinite loop') vulnerability in Apache Thrift c_glib bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
CVE-2026-96289
- EPSS 0.43%
- Veröffentlicht 02.10.2026 12:07:02
- Zuletzt bearbeitet 02.10.2026 14:30:28
Uncontrolled Recursion vulnerability in Apache Thrift PHP bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
CVE-2026-96287
- EPSS 0.43%
- Veröffentlicht 02.10.2026 12:05:59
- Zuletzt bearbeitet 02.10.2026 18:17:08
Inefficient Algorithmic Complexity vulnerability in Apache Thrift Perl bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
CVE-2026-96286
- EPSS 0.43%
- Veröffentlicht 02.10.2026 12:04:28
- Zuletzt bearbeitet 02.10.2026 14:30:28
Uncaught exception vulnerability in Apache Thrift Perl bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.