CVE-2026-41608 | Apache Thrift up to 0.23.x zlib Decompression privilege escalation

SecurityVulns

A vulnerability identified as problematic has been detected in Apache Thrift up to 0.23.x. Affected by this issue is some unknown functionality of the component zlib Decompression Handler. This manipulation causes privilege escalation.

The identification of this vulnerability is CVE-2026-41608. The attack needs to be done within the local network. There is no exploit available.

You should upgrade the affected component.VulDB Recent EntriesRead More