| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2026-61373 | Apache Thrift: Java TSaslNonblockingServer pre-auth unbounded SASL frame allocation | Apache Software Foundation | Apache Thrift | High | 8.7 | 2026-10-02 11:07:29 | Deep Dive |
| CVE-2026-96990 | Apache Thrift: Erlang thrift_json_protocol reads a whole message with no size bound | Apache Software Foundation | Apache Thrift | High | 8.2 | 2026-10-02 11:00:27 | Deep Dive |
| CVE-2026-94642 | Apache Thrift: PHP `TSimpleServer` exits the whole process on any non-transport exception | Apache Software Foundation | Apache Thrift | High | 8.7 | 2026-10-02 10:57:15 | Deep Dive |
| CVE-2026-94644 | Apache Thrift: PHP `TJSONProtocol` string/number readers have no size bound | Apache Software Foundation | Apache Thrift | High | 8.2 | 2026-10-02 10:53:37 | Deep Dive |
| CVE-2026-94645 | Apache Thrift: Node.js `TJSONProtocol` uses a peer-declared container size as an unbounded loop bound | Apache Software Foundation | Apache Thrift | High | 8.2 | 2026-10-02 10:51:40 | Deep Dive |
| CVE-2026-94650 | Apache Thrift: c_glib generated struct readers have no recursion-depth guard (native stack exhaustion) | Apache Software Foundation | Apache Thrift | High | 8.2 | 2026-10-02 10:49:38 | Deep Dive |
| CVE-2026-94651 | Apache Thrift: Java `TSaslNonblockingServer` `Computation.run` orphans a connection on a pre-auth parse error | Apache Software Foundation | Apache Thrift | High | 8.2 | 2026-10-02 10:48:38 | Deep Dive |
| CVE-2026-85483 | Apache Thrift: c_glib TZlibTransport reports a full read after a premature stream end | Apache Software Foundation | Apache Thrift | Medium | 6.3 | 2026-10-02 10:46:55 | Deep Dive |
| CVE-2026-85493 | Apache Thrift, Apache Thrift: TProtocolUtil.skip follows peer-chosen nesting to any depth the stack allows (Dart, Java ME) | Apache Software Foundation | Apache Thrift | High | 8.7 | 2026-10-02 10:45:58 | Deep Dive |
| CVE-2026-85494 | Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift, Apache Thrift: Framed transport and binary protocol size read buffers from a peer-declared length without a limit (multi-language) | Apache Software Foundation | Apache Thrift | High | 8.7 | 2026-10-02 10:42:45 | Deep Dive |
| CVE-2026-97876 | Bypass of GRUB lockdown restriction in Secure Boot mode via serial command MMIO base address | GNU | grub2 | Medium | 6.4 | 2026-10-02 10:34:23 | Deep Dive |
| CVE-2026-104606 | itsourcecode Online Admission System Project confirm.php sql injection | itsourcecode | Online Admission System Project | Medium | 6.3 | 2026-10-02 10:30:16 | Deep Dive |
| CVE-2026-91135 | Apache Thrift: C++ `THeaderTransport::transform()` heap buffer overflow (write direction) | Apache Software Foundation | Apache Thrift | Critical | 9.2 | 2026-10-02 10:28:51 | Deep Dive |
| CVE-2026-86326 | 协议网关固件签名验证绕过漏洞 | Moxa | MGate MB3170 Series | High | 8.6 | 2026-10-02 10:21:57 | Deep Dive |
| CVE-2026-91137 | Apache Thrift: PHP `thrift_protocol` accelerator: zero-byte container elements | Apache Software Foundation | Apache Thrift | High | 8.7 | 2026-10-02 10:18:38 | Deep Dive |
| CVE-2026-86325 | 协议网关账户管理接口栈溢出漏洞 | Moxa | MGate MB3170 Series | Critical | 9.4 | 2026-10-02 10:18:30 | Deep Dive |
| CVE-2026-59668 | Multiple vulnerabilities in the Repasat application | Repasat | Repasat application | Medium | 4.8 | 2026-10-02 10:17:56 | Deep Dive |
| CVE-2026-93925 | Apache Thrift: C++ `THeaderTransport::writeVarint32()` stack buffer overflow on a negative protocol id | Apache Software Foundation | Apache Thrift | High | 8.7 | 2026-10-02 10:16:18 | Deep Dive |
| CVE-2026-59667 | Multiple vulnerabilities in the Repasat application | Repasat | Repasat application | Medium | 4.8 | 2026-10-02 10:15:07 | Deep Dive |
| CVE-2026-93926 | Apache Thrift: C++ `THeaderTransport::untransform()` leaks the zlib stream on the error path | Apache Software Foundation | Apache Thrift | High | 8.7 | 2026-10-02 10:13:56 | Deep Dive |