CVE-2026-41605Disclosure(apache / thrift)

LOWCVSS 7.3 · HIGH

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Patch apache thrift systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Integer Overflow or Wraparound vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0. Users are recommended to upgrade to version 0.23.0, which fixes the issue.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-190

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • thrift

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 2 signals
  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • 3 total mentions across 1 day

Affected systems

Vendors
Products
thrift

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-04-28: 3Patch / Workaround · 2026-04-28: 2Technical Details · 2026-04-28: 204-28
Signal classification3 categories
Disclosure
133.3%
General
133.3%
Patch
133.3%
Referenced assets3 URLs
Full discourse3 posts
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-41605 Integer Overflow or Wraparound vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0. Users are recommended to upgrade to version 0.23.0, … https://www.cve.org/CVERecord?id=CVE-2026-41605 ----- Traducción: CVE-2026-41605 Des… http://infoflow.cloud`

    Post summary

    CVE‑2026‑41605, an integer overflow or wraparound issue in Apache Thrift prior to 0.23.0, has been disclosed with a recommended upgrade to mitigate the risk.

    0000030
    73 followersView on X
  • CVE@CVEnew
    Patch

    CVE-2026-41605 Integer Overflow or Wraparound vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0. Users are recommended to upgrade to version 0.23.0, … https://www.cve.org/CVERecord?id=CVE-2026-41605

    Post summary

    New CVE disclosed for Apache Thrift; upgrade to 0.23.0 recommended to address an integer overflow/wraparound vulnerability affecting earlier versions.

    00000131
    57.3K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    General

    CVE-2026-41605 CVE-2026-41605 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-41605

    Post summary

    The text only lists the CVE identifier twice and provides a link to a vulnerability database, offering no substantive details on the vulnerability, PoC, exploitation, or remediation.

    0000053
    4.0K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appapachethrift---

Explore more