VYPR
High severity7.5NVD Advisory· Published Jul 27, 2026· Updated Jul 27, 2026

CVE-2026-48145

CVE-2026-48145

Description

Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift C++ bindings.

This issue affects Apache Thrift: before 0.24.0.

Users are recommended to upgrade to version 0.24.0, which fixes the issue.

Affected products

4

Patches

Vulnerability mechanics

References

3

News mentions

1