CVE-2026-48586
- EPSS 1.07%
- Veröffentlicht 27.07.2026 11:02:54
- Zuletzt bearbeitet 27.07.2026 19:49:42
Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Apache Thrift C++, Java, Python, Go, D, C/GLib bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade to version 0.24.0, which fi...
CVE-2026-48145
- EPSS 0.44%
- Veröffentlicht 27.07.2026 10:59:46
- Zuletzt bearbeitet 27.07.2026 19:49:14
Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift C++ bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade to version 0.24.0, which fixes the issue.
CVE-2026-48144
- EPSS 0.42%
- Veröffentlicht 27.07.2026 10:58:31
- Zuletzt bearbeitet 28.07.2026 05:17:06
Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift c_glib bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade to version 0.24.0, which fixes the issue.
CVE-2026-45112
- EPSS 1.94%
- Veröffentlicht 27.07.2026 10:57:34
- Zuletzt bearbeitet 27.07.2026 19:51:07
Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Java bindings. This issue affects Apache Thrift: from 0.19.0 before 0.24.0. Users are recommended to upgrade to version 0.24.0, which fixes the issue.
CVE-2026-43871
- EPSS 1.07%
- Veröffentlicht 27.07.2026 10:56:15
- Zuletzt bearbeitet 27.07.2026 19:51:36
Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in Apache Thrift Python, Go, PHP and Java bindings.This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade to version 0.24.0, which fixes the issue.
CVE-2026-41608
- EPSS 1.1%
- Veröffentlicht 27.07.2026 10:53:43
- Zuletzt bearbeitet 28.07.2026 16:17:45
Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Apache Thrift Python bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade to version 0.24.0, which fixes the issue.
CVE-2026-43870
- EPSS 0.39%
- Veröffentlicht 05.05.2026 09:16:04
- Zuletzt bearbeitet 06.05.2026 18:05:04
Origin Validation Error, Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'), Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Request/Response Splitting'), Uncontrolled Resource Consumption vulnerability in...
CVE-2026-43868
- EPSS 0.71%
- Veröffentlicht 05.05.2026 09:16:04
- Zuletzt bearbeitet 21.07.2026 12:18:39
Memory Allocation with Excessive Size Value vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0. Users are recommended to upgrade to version 0.23.0, which fixes the issue.
CVE-2026-43869
- EPSS 0.63%
- Veröffentlicht 05.05.2026 07:25:48
- Zuletzt bearbeitet 09.09.2026 13:20:06
Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0. Users are recommended to upgrade to version 0.23.0, which fixes the issue.
CVE-2026-41636
- EPSS 0.45%
- Veröffentlicht 28.04.2026 09:22:14
- Zuletzt bearbeitet 28.04.2026 18:38:39
Uncontrolled Recursion vulnerability in Apache Thrift Node.js bindings This issue affects Apache Thrift: before 0.23.0. Users are recommended to upgrade to version 0.23.0, which fixes the issue.