CVE-2026-94635

ADVISORY - nist

Summary

Allocation of resources without limits or throttling, Improper handling of length parameter inconsistency vulnerability in Apache Thrift Lua bindings.

This issue affects Apache Thrift: before 0.25.0.

Users are recommended to upgrade to version 0.25.0, which fixes the issue.

EPSS Score⁠: 0.00426 (0.346)

Common Weakness Enumeration (CWE)

ADVISORY - nist

Improper Handling of Length Parameter Inconsistency

Allocation of Resources Without Limits or Throttling

ADVISORY - redhat

Improper Handling of Length Parameter Inconsistency


Sign in to Docker Scout

See which of your images are affected by this CVE and how to fix them by signing into Docker Scout.

Sign in