CVE-2026-63772EPSS p34.7%

CVE-2026-63772CVE-2026-63772

Description

Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift go bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.

Scoring

EPSS0.43% probability of exploitation · percentile 34.7% · 2026-10-06T12:00:23Z
Last modified2026-10-03
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.