Boletines de Vulnerabilidades

CVE-2026-86536

   
Software afectado APACHE
 
Improperly controlled modification of object prototype attributes ('prototype pollution') vulnerability in Apache Thrift all JS bindings.



This issue affects Apache Thrift: before 0.25.0.



Users are recommended to upgrade to version 0.25.0 and re-generate JS code, which fixes the issue.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-86536