NULL Pointer Dereference and Use of Uninitialized Variable Vulnerability in Apache Thrift
CVE-2026-66859
8.7HIGH
What is CVE-2026-66859?
A vulnerability exists in Apache Thrift's c_glib bindings that allows for a NULL Pointer Dereference and Use of Uninitialized Variable. This can lead to unexpected application behavior or crashes. Users are urged to upgrade to version 0.25.0 to eliminate this vulnerability.
Affected Version(s)
Apache Thrift 0 < 0.25.0