OCTOBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-87117

HIGH · CVSS 8.7 EPSS 0.43%

Source: NVD + CISA KEV + EPSS · Published 2026-10-02 · Last synced 2026-10-07

CyberRota Analysis

AI-Generated

A NULL pointer dereference vulnerability in the Apache Thrift PHP bindings prior to version 0.25.0 can lead to application crashes and potential denial of service. Organizations utilizing affected versions of Apache Thrift should prioritize upgrading to version 0.25.0 to mitigate the risk associated with this high-severity flaw.

CVE
CVE-2026-87117
Severity
HIGH
CVSS
8.7
EPSS
0.43%
Apache

Original NVD Description

NULL pointer dereference vulnerability in Apache Thrift PHP bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.