Inefficient Algorithmic Complexity Vulnerability in Apache Thrift by Apache
CVE-2026-94658
8.7HIGH
What is CVE-2026-94658?
An inefficient algorithmic complexity vulnerability exists in the Lua bindings of Apache Thrift. This issue could lead to performance degradation and resource exhaustion, impacting the efficiency of applications utilizing these bindings. The vulnerability is present in versions prior to 0.25.0. Users are strongly advised to upgrade to version 0.25.0 or later to mitigate the risk associated with this vulnerability.
Affected Version(s)
Apache Thrift 0 < 0.25.0