← Back to CVE search

CVE-2026-48145

Apache Thrift

Description

Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift C++ bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade to version 0.24.0, which fixes the issue.

CVSS 7.5EPSS 0.43499999999999994%Risk 0.78
View source
Published
2026-07-27 12:16:44
Affected versions
<0.24.0
Type
Library
Last modified
2026-07-27 19:49:14
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N