Description
In Apache Thrift 0.9.3 to 0.12.0, a server implemented in Go using TJSONProtocol or TSimpleJSONProtocol may panic when feed with invalid input data.
Remediation
References
Related Vulnerabilities
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2013-4522)
WordPress Plugin Advanced Permalinks Cross-Site Scripting (0.1.19)
Jetty Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2024-22201)
WordPress Plugin Qiniu Cloudtuchuang Cross-Site Scripting (1.8)