SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-55971

CRITICAL · CVSS 9.8 EPSS 0.55%

Source: NVD + CISA KEV + EPSS · Published 2026-07-27 · Last synced 2026-08-26

CyberRota Analysis

AI-Generated

A heap-based buffer overflow vulnerability in the C++ bindings of Apache Thrift prior to version 0.24.0 can lead to remote code execution, posing a critical risk to affected systems. Organizations utilizing Apache Thrift should prioritize upgrading to version 0.24.0 to mitigate this severe security threat.

CVE
CVE-2026-55971
Severity
CRITICAL
CVSS
9.8
EPSS
0.55%
Apache

Original NVD Description

Heap-based Buffer Overflow vulnerability in Apache Thrift C++ bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade to version 0.24.0, which fixes the issue.

Related CVEs

Other vulnerabilities affecting the same vendor(s)