Known Vulnerabilities for Thrift by Apache
Listed below are 10 of the newest known vulnerabilities associated with "Thrift" by "Apache".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-43870 json | Origin Validation Error, Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'), Improper Neutralizat... | Not Provided | 2026-05-05 | 2026-05-06 |
| CVE-2026-43869 json | Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift. This issue affects Apache Thrift: befo... | Not Provided | 2026-05-05 | 2026-05-06 |
| CVE-2026-43868 json | Memory Allocation with Excessive Size Value vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0.... | Not Provided | 2026-05-05 | 2026-05-05 |
| CVE-2026-41636 json | Uncontrolled Recursion vulnerability in Apache Thrift Node.js bindings This issue affects Apache Thrift: before 0.23.0. Use... | Not Provided | 2026-04-28 | 2026-04-28 |
| CVE-2026-41607 json | Out-of-bounds Read vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0. Users are recommended t... | Not Provided | 2026-04-28 | 2026-04-28 |
| CVE-2026-41606 json | Uncontrolled Recursion vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0. Users are recommend... | Not Provided | 2026-04-28 | 2026-04-28 |
| CVE-2026-41605 json | Integer Overflow or Wraparound vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0. Users are r... | Not Provided | 2026-04-28 | 2026-04-28 |
| CVE-2026-41604 json | Out-of-bounds Read vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0. Users are recommended t... | Not Provided | 2026-04-28 | 2026-04-28 |
| CVE-2026-41603 json | Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift. This issue affects Apache Thrift: befo... | Not Provided | 2026-04-28 | 2026-04-28 |
| CVE-2026-41602 json | Integer Overflow or Wraparound vulnerability in Apache Thrift TFramedTransport Go language implementation This issue affects... | Not Provided | 2026-04-28 | 2026-04-28 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Apache | Thrift | 0.9.3.1 | |||
| Application | Apache | Thrift | 0.9.3 | |||
| Application | Apache | Thrift | 0.9.3 | |||
| Application | Apache | Thrift | 0.9.2 | |||
| Application | Apache | Thrift | 0.9.2 | |||
| Application | Apache | Thrift | 0.9.1 | |||
| Application | Apache | Thrift | 0.9.1 | |||
| Application | Apache | Thrift | 0.9.0 | |||
| Application | Apache | Thrift | 0.9.0 | |||
| Application | Apache | Thrift | 0.8.0 | |||
| Application | Apache | Thrift | 0.8.0 | |||
| Application | Apache | Thrift | 0.7.0 | |||
| Application | Apache | Thrift | 0.7.0 | |||
| Application | Apache | Thrift | 0.6.1 | |||
| Application | Apache | Thrift | 0.6.1 | |||
| Application | Apache | Thrift | 0.6.0 | |||
| Application | Apache | Thrift | 0.6.0 | |||
| Application | Apache | Thrift | 0.5.0 | |||
| Application | Apache | Thrift | 0.5.0 | |||
| Application | Apache | Thrift | 0.4.0 |