VYPR

THeaderTransport

by Apache

CVEs (1)

  • CVE-2026-91135CriOct 2, 2026
    risk 0.53cvss —epss —

    Heap-based buffer overflow vulnerability in Apache Thrift C++ THeaderTransport. When an application enables the ZLIB transform for the frames it sends, THeaderTransport::transform() copies the compressed frame into the write buffer without making sure it fits. Data that does…