Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
PYSEC-2026-3927
  • PyPI/thrift
Apache Thrift Python bindings have a Improper Validation of Certificate with Host Mismatch vulnerabilit 10 Sep
  • Fix available
  • Severity - 5.9 (Medium)
PYSEC-2026-3926
  • PyPI/thrift
Apache Thrift Python, Go, PHP and Java bindings have an Infinite Loop 10 Sep
  • Fix available
  • Severity - 8.7 (High)
PYSEC-2026-3925
  • PyPI/thrift
Apache Thrift Python bindings have an Improper Handling of Highly Compressed Data (Data Amplification) vulnerability 10 Sep
  • Fix available
  • Severity - 7.5 (High)
GHSA-hwrj-9rr4-24xh
  • PyPI/thrift
Apache Thrift Python bindings have a Improper Validation of Certificate with Host Mismatch vulnerabilit 27 Jul
  • Fix available
  • Severity - 5.9 (Medium)
GHSA-6pjx-3pjc-mrj8
  • PyPI/thrift
Apache Thrift Python bindings have an Improper Handling of Highly Compressed Data (Data Amplification) vulnerability 27 Jul
  • Fix available
  • Severity - 7.5 (High)
GHSA-8wv5-x4w7-5gww
  • Go/github.com/apache/thrift
  • Maven/org.apache.thrift:libthrift
  • Packagist/apache/thrift
  • PyPI/thrift
Apache Thrift Python, Go, PHP and Java bindings have an Infinite Loop 27 Jul
  • Fix available
  • Severity - 8.7 (High)