Search CVE reports


Toggle filters

671 – 680 of 82149 results


CVE-2026-93925

Medium priority
Needs evaluation

Stack-based buffer overflow, Incorrect bitwise shift of integer vulnerability in Apache Thrift C++ THeaderProtocol. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.

1 affected package

thrift

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
thrift Needs evaluation Needs evaluation Needs evaluation Needs evaluation —
Show less packages

CVE-2026-92834

Medium priority
Needs evaluation

Use of uninitialized resource, Return of wrong status code vulnerability in Apache Thrift C++ WebSocket server. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.

1 affected package

thrift

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
thrift Needs evaluation Needs evaluation Needs evaluation Needs evaluation —
Show less packages

CVE-2026-91137

Medium priority
Needs evaluation

Improper validation of specified quantity in input, Allocation of resources without limits or throttling, Excessive Iteration vulnerability in Apache Thrift PHP bindings. This issue affects Apache Thrift: before 0.25.0. Users are...

1 affected package

thrift

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
thrift Needs evaluation Needs evaluation Needs evaluation Needs evaluation —
Show less packages

CVE-2026-91135

Medium priority
Needs evaluation

Heap-based buffer overflow vulnerability in Apache Thrift C++ THeaderTransport. When an application enables the ZLIB transform for the frames it sends, THeaderTransport::transform() copies the compressed frame into the...

1 affected package

thrift

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
thrift Needs evaluation Needs evaluation Needs evaluation Needs evaluation —
Show less packages

CVE-2026-90440

Medium priority
Needs evaluation

Uncaught exception, improper handling of exceptional conditions, improper resource shutdown vulnerability in Apache Thrift D thrift.server.nonblocking.TNonblockingServer. This issue affects Apache Thrift: before 0.25.0. Users are...

1 affected package

thrift

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
thrift Needs evaluation Needs evaluation Needs evaluation Needs evaluation —
Show less packages

CVE-2026-87117

Medium priority
Needs evaluation

NULL pointer dereference vulnerability in Apache Thrift PHP bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.

1 affected package

thrift

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
thrift Needs evaluation Needs evaluation Needs evaluation Needs evaluation —
Show less packages

CVE-2026-86537

Medium priority
Needs evaluation

Uncaught exception, Loop with unreachable exit condition ('infinite loop'), Integer underflow (wrap or wraparound) vulnerability in Apache Thrift D language bindings. This issue affects Apache Thrift: before 0.25.0. Users are...

1 affected package

thrift

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
thrift Needs evaluation Needs evaluation Needs evaluation Needs evaluation —
Show less packages

CVE-2026-86536

Medium priority
Needs evaluation

Improperly controlled modification of object prototype attributes ('prototype pollution') vulnerability in Apache Thrift all JS bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version...

1 affected package

thrift

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
thrift Needs evaluation Needs evaluation Needs evaluation Needs evaluation —
Show less packages

CVE-2026-86535

Medium priority
Needs evaluation

Loop with unreachable exit condition ('infinite loop'), Improperly controlled modification of object prototype attributes ('prototype pollution') vulnerability in Apache Thrift NodeJS bindings with TJSONProtocol. This issue...

1 affected package

thrift

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
thrift Needs evaluation Needs evaluation Needs evaluation Needs evaluation —
Show less packages

CVE-2026-85515

Medium priority
Needs evaluation

In Bouncy Castle for Java before 1.86, a truncated OpenPGP encrypted message was accepted with no error reported, and on the SEIPD version 1 path with no integrity check performed at all. RFC 9580 sec. 13.7 permits an...

1 affected package

bouncycastle

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bouncycastle Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages