CVE-2026-48586 | Apache Thrift up to 0.23.x TZlibTransport Decompression privilege escalation
A vulnerability classified as problematic has been found in Apache Thrift up to 0.23.x. Impacted is an unknown function of the component TZlibTransport Decompression Handler. The manipulation leads to privilege escalation.
This vulnerability is listed as CVE-2026-48586. The attack must be carried out from within the local network. There is no available exploit.
It is recommended to upgrade the affected component.VulDB Recent EntriesRead More