Where
AND
-Infinity
0

Apache ThriftAllocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Java bindings. …

Risk 33
Severity
7
First published (updated )

Apache ThriftApache Thrift: C++ THeaderTransport::readString() info-header length bounds bypass

Risk 70
Severity
8.7
First published (updated )

Apache Apache ThriftApache Thrift: Rust binary protocol non-strict path missing string size limit

Risk 50
Severity
8.7
First published (updated )

Apache ThriftApache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift: integer overflow in TProtocol::checkReadBytesAvailable()

Risk 50
Severity
8.7
First published (updated )

Apache Apache ThriftApache Thrift: Node.js quadratic-time DoS in server receive transports

Risk 50
Severity
8.7
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Apache ThriftApache Thrift: Ruby THeaderTransport ZLIB Decompression Bomb

Risk 46
Severity
7.5
First published (updated )

Apache ThriftApache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift: TZlibTransport Decompression Size Limit

Risk 51
Severity
8.7
First published (updated )

Apache Thrift (C++ bindings)Apache Thrift: C++ TSSLSocket matchName() RFC 6125 Wildcard Bypass

Risk 46
Severity
8.2
First published (updated )

Apache ThriftApache Thrift, Apache Thrift, Apache Thrift, Apache Thrift: TCompactProtocol varint byte-count limit

Risk 50
Severity
8.7
First published (updated )

Apache Apache ThriftApache Thrift: Unbounded Zlib Decompression in Python THeaderTransport

Risk 46
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Apache ThriftMemory Allocation with Excessive Size Value vulnerability in Apache Thrift. This issue affects Apac…

Risk 33
Severity
7
First published (updated )

Apache ThriftPath Traversal

Risk 33
Severity
7
First published (updated )

Apache ThriftImproper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift. This issue af…

Risk 33
Severity
7
First published (updated )

Apache ThriftApache Thrift: Node.js web_server.js multi-vulnerability

Risk 54
Severity
7.3
First published (updated )

Apache ThriftApache Thrift: TSSLTransportFactory.java hostname verification

Risk 54
Severity
7.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Apache Thrift (Rust)Apache Thrift: Rust implementation vulnerable to CVE-2020-13949 pattern

Risk 46
Severity
7.5
First published (updated )

Apache Thrift c_glibApache Thrift: Specially crafted input can crash a c_glib Thrift server with invalid pointer error.

Risk 46
Severity
7.5
First published (updated )

Apache ThriftApache Thrift: Java TSSLTransportFactory hostname verification

Risk 61
Severity
7.4
First published (updated )

Apache ThriftApache Thrift: Go TFramedTransport uint32 overflow

Risk 46
Severity
7.5
First published (updated )

Apache ThriftApache Thrift: Swift Range crash in skip()

Risk 58
Severity
8.2
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Apache ThriftApache Thrift: Swift Compact Protocol integer overflow

Risk 70
Severity
7.7
First published (updated )

Apache ThriftApache Thrift: c_glib dispatch stack overflow

Risk 46
Severity
7.5
First published (updated )

Apache ThriftApache Thrift: Node.js skip() recursion

Risk 50
Severity
8.7
First published (updated )

IBM Data Virtualization on Cloud Pak for DataCVE-2026-43868: Apache Thrift: Rust implementation vulnerable to CVE-2020-13949 pattern

Risk 43
Severity
7.5
First published (updated )

redhat/eap7-activemq-artemisIn Apache Thrift 0.9.3 to 0.12.0, a server implemented in Go using TJSONProtocol or TSimpleJSONProto…

Risk 46
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

redhat/eap7-activemq-artemisApache Thrift is vulnerable to a denial of service, caused by an error when processing untrusted Thr…

Risk 47
Severity
7.8
First published (updated )

Oracle Global Lifecycle Management OpatchInput Validation

Risk 45
Severity
7.5
First published (updated )

go/github.com/apache/thriftCommand Injection

Risk 80
Severity
8.8
First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203