Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-41608

Опубликовано: 27 июл. 2026
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Apache Thrift Python bindings.

This issue affects Apache Thrift: before 0.24.0.

Users are recommended to upgrade to version 0.24.0, which fixes the issue.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:apache:thrift:*:*:*:*:*:*:*:*
Версия до 0.24.0 (исключая)

EPSS

Процентиль: 62%
0.01097
Низкий

7.5 High

CVSS3

Дефекты

CWE-409

Связанные уязвимости

CVSS3: 7.5
ubuntu
14 дней назад

Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Apache Thrift Python bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade to version 0.24.0, which fixes the issue.

CVSS3: 7.5
redhat
15 дней назад

Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Apache Thrift Python bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade to version 0.24.0, which fixes the issue.

CVSS3: 7.5
msrc
4 дня назад

Apache Thrift: Unbounded Zlib Decompression in Python THeaderTransport

CVSS3: 7.5
debian
14 дней назад

Improper Handling of Highly Compressed Data (Data Amplification) vulne ...

CVSS3: 7.5
github
14 дней назад

Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Apache Thrift Python bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade to version 0.24.0, which fixes the issue.

EPSS

Процентиль: 62%
0.01097
Низкий

7.5 High

CVSS3

Дефекты

CWE-409