Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7pwc-h2j2-rjgj

Опубликовано: 05 мая 2026
Источник: github
Github: Прошло ревью
CVSS3: 7.3

Описание

Apache Thrift has an Improper Validation of Certificate with Host Mismatch Vulnerability

Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift.

This issue affects Apache Thrift: before 0.23.0.

Users are recommended to upgrade to version 0.23.0, which fixes the issue.

Пакеты

Наименование

org.apache.thrift:libthrift

maven
Затронутые версииВерсия исправления

<= 0.22.0

0.23.0

EPSS

Процентиль: 47%
0.00632
Низкий

7.3 High

CVSS3

Дефекты

CWE-297

Связанные уязвимости

CVSS3: 7.3
ubuntu
3 месяца назад

Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0. Users are recommended to upgrade to version 0.23.0, which fixes the issue.

CVSS3: 7.3
redhat
3 месяца назад

Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0. Users are recommended to upgrade to version 0.23.0, which fixes the issue.

CVSS3: 7.3
nvd
3 месяца назад

Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0. Users are recommended to upgrade to version 0.23.0, which fixes the issue.

msrc
3 месяца назад

Apache Thrift: TSSLTransportFactory.java hostname verification

CVSS3: 7.3
debian
3 месяца назад

Improper Validation of Certificate with Host Mismatch vulnerability in ...

EPSS

Процентиль: 47%
0.00632
Низкий

7.3 High

CVSS3

Дефекты

CWE-297