Mmastodon TechnologyCybersecurity first seen 7 h ago, last 7 h ago, peak #11
High-severity vulnerability disclosed in Apache Thrift Lua library
Original: ๐จ EUVD-2026-91330 ๐ Score: 8.7/10 (CVSS v3.1) ๐ฆ Product: Apache Thrift ๐ข Vendor: Apache Software Foundation ๐ Updated: 2
A vulnerability tracked as EUVD-2026-91330 has been catalogued affecting the Lua component of Apache Thrift, the open-source RPC framework maintained by the Apache Software Foundation. The flaw, scored 8.7 out of 10 under CVSS v3.1, involves allocation of resources without limits or throttling and improper handling of length parameter inconsistency, which could enable denial-of-service conditions.
Why now: Security teams are alerting on a newly updated high-severity CVE affecting a widely used open-source framework.
Apache ThriftApache Software FoundationEUVD-2026-91330
Evidence
API: https://socialmediatrends-api.osmike.com/v1/trends/721166