Apache Thrift
63 known vulnerabilities in Apache Thrift, 2 critical, with patch priority, exploit likelihood and the news covering them.
Latest vulnerabilities
- CVE-2026-96289 CVSS 8.2 high Uncontrolled Recursion vulnerability in Apache Thrift PHP bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended…
- CVE-2026-96287 CVSS 8.2 high Inefficient Algorithmic Complexity vulnerability in Apache Thrift Perl bindings. This issue affects Apache Thrift: before 0.25.0. Users…
- CVE-2026-96286 CVSS 8.2 high Uncaught exception vulnerability in Apache Thrift Perl bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to…
- CVE-2026-96277 CVSS 8.7 high Uncaught exception, Improper Handling of Exceptional Conditions vulnerability in Apache Thrift Ruby bindings. This issue affects Apache…
- CVE-2026-94658 CVSS 8.7 high Inefficient Algorithmic Complexity vulnerability in Apache Thrift Lua bindings. This issue affects Apache Thrift: before 0.25.0. Users are…
- CVE-2026-94657 CVSS 8.2 high Allocation of resources without limits or throttling vulnerability in Apache Thrift JavaME bindings. This issue affects Apache Thrift…
- CVE-2026-94656 CVSS 8.2 high Allocation of resources without limits or throttling vulnerability in Apache Thrift ruby bindings. This issue affects Apache Thrift…
- CVE-2026-94655 CVSS 8.2 high Allocation of resources without limits or throttling, Inefficient Algorithmic Complexity vulnerability in Apache Thrift Lua bindings. This…
- CVE-2026-94654 CVSS 8.2 high Loop with unreachable exit condition ('infinite loop') vulnerability in Apache Thrift python bindings. This issue affects Apache Thrift…
- CVE-2026-85476 CVSS 8.2 high Loop with unreachable exit condition ('infinite loop') vulnerability in Apache Thrift c_glib bindings. This issue affects Apache Thrift…
- CVE-2026-83745 CVSS 8.7 high Memory allocation with excessive size value, Improper handling of length parameter inconsistency vulnerability in Apache Thrift nodejs and…
- CVE-2026-83663 CVSS 8.7 high Uncontrolled Recursion vulnerability in Apache Thrift go bindings. Both Go transports satisfy a read out of a buffered frame and, when…
- CVE-2026-83632 CVSS 9.2 critical Allocation of resources without limits or throttling, Integer overflow or wraparound, Heap-based buffer overflow vulnerability in Apache…
- CVE-2026-66859 CVSS 8.7 high NULL Pointer Dereference, Use of Uninitialized Variable vulnerability in Apache Thrift c_glib bindings. This issue affects Apache Thrift…
- CVE-2026-66858 CVSS 8.7 high The protocol skip routine in several Apache Thrift bindings did not apply the binding's recursion limit, so a message that nests unknown…
- CVE-2026-66837 CVSS 8.7 high Stack-based Buffer Overflow, Integer Overflow or Wraparound vulnerability in Apache Thrift php bindings. This issue affects Apache Thrift…
- CVE-2026-66331 CVSS 6.9 medium Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Delphi bindings buffered transport. This issue affects…
- CVE-2026-66081 CVSS 8.7 high Access of Uninitialized Pointer vulnerability in Apache Thrift c_glib bindings. This issue affects Apache Thrift: before 0.25.0. Users are…
- CVE-2026-66055 CVSS 8.2 high Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift C++, Java, Go, netstd, Python and Delphi bindings…
- CVE-2026-66054 CVSS 6.9 medium Allocation of Resources Without Limits or Throttling, Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in…
- CVE-2026-63772 CVSS 8.7 high Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift go bindings. This issue affects Apache Thrift: before…
- CVE-2026-61374 CVSS 7.1 high Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Java bindings. This issue affects Apache Thrift…
- CVE-2026-96294 CVSS 8.7 high Uncaught exception, Improper Handling of Exceptional Conditions vulnerability in Apache Thrift NodeJS bindings. This issue affects Apache…
- CVE-2026-96292 CVSS 8.2 high Inefficient regular expression complexity, Inefficient Algorithmic Complexity vulnerability in Apache Thrift Lua bindings. This issue…
- CVE-2026-96288 CVSS 8.2 high Uncontrolled Recursion, Allocation of resources without limits or throttling vulnerability in Apache Thrift Erlang bindings. This issue…
- CVE-2026-94653 CVSS 8.2 high Inefficient Algorithmic Complexity vulnerability in Apache Thrift PHP bindings. This issue affects Apache Thrift: before 0.25.0. Users are…
- CVE-2026-94652 CVSS 6.3 medium Missing release of memory after effective lifetime vulnerability in Apache Thrift c++ bindings. This issue affects Apache Thrift: before…
- CVE-2026-94648 CVSS 8.2 high Allocation of resources without limits or throttling vulnerability in Apache Thrift dart bindings. This issue affects Apache Thrift…
- CVE-2026-94646 CVSS 8.7 high Uncaught exception, Improper validation of specified quantity in input, Improperly controlled modification of object prototype attributes…
- CVE-2026-94638 CVSS 6.3 medium Allocation of resources without limits or throttling vulnerability in Apache Thrift PHP bindings. This issue affects Apache Thrift: before…