CVE-2026-91137
⚪ Do wiadomości
Niewłaściwa walidacja ilości w Apache Thrift umożliwia atak DoS.
CVSS
0.0
EPSS
0.4%
Exploit
none
Vendor
Opis źródłowy (NVD)
Improper validation of specified quantity in input, Allocation of resources without limits or throttling, Excessive Iteration vulnerability in Apache Thrift PHP bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
brak
Brak patcha
Źródła i daty
| Źródło | Wartość |
|---|---|
| NVD – CVSS | 0.0 |
| CISA KEV (aktywnie wykorzystywane) | Nie |
| FIRST EPSS (prawdopodobieństwo exploita) | 0.4% |
| Opublikowano (NVD) | 2026-10-02 11:17:37 UTC |
| Ostatnia modyfikacja (NVD) | 2026-10-02 14:30:28 UTC |