Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p2c7-c4gw-678h

Опубликовано: 27 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.2
CVSS3: 7.5

Описание

Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift C++ bindings.

This issue affects Apache Thrift: before 0.24.0.

Users are recommended to upgrade to version 0.24.0, which fixes the issue.

Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift C++ bindings.

This issue affects Apache Thrift: before 0.24.0.

Users are recommended to upgrade to version 0.24.0, which fixes the issue.

EPSS

Процентиль: 36%
0.00435
Низкий

8.2 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-297

Связанные уязвимости

CVSS3: 7.5
ubuntu
15 дней назад

Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift C++ bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade to version 0.24.0, which fixes the issue.

CVSS3: 5.9
redhat
15 дней назад

Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift C++ bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade to version 0.24.0, which fixes the issue.

CVSS3: 7.5
nvd
15 дней назад

Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift C++ bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade to version 0.24.0, which fixes the issue.

CVSS3: 7.5
msrc
4 дня назад

Apache Thrift: C++ TSSLSocket matchName() RFC 6125 Wildcard Bypass

CVSS3: 7.5
debian
15 дней назад

Improper Validation of Certificate with Host Mismatch vulnerability in ...

EPSS

Процентиль: 36%
0.00435
Низкий

8.2 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-297