fbthrift Info

fbthrift was added to epel9 repo on 2023-05-05
Page updated: 2026-02-19 11:33
Repo Status - Overall Status

Source NVR: fbthrift-2023.04.24.00-1.el9 (2023-05-05)

Binary Packages

fbthrift fbthrift-2023.04.24.00-1.el9
fbthrift-devel fbthrift-devel-2023.04.24.00-1.el9

Bugs

2432941 NEW CVE-2025-13465 fbthrift: prototype pollution in _.unset and _.omit functions [epel-9]
2437341 NEW CVE-2025-68458 fbthrift: webpack buildHttp: allowedUris allow-list bypass via URL userinfo (@) leading to build-time SSRF behavior [epel-9]
2437352 NEW CVE-2025-68157 fbthrift: webpack buildHttp HttpUriPlugin allowedUris bypass via HTTP redirects [epel-9]
2439010 NEW CVE-2026-25639 fbthrift: Axios affected by Denial of Service via __proto__ Key in mergeConfig [epel-9]
2439368 NEW CVE-2025-69873 fbthrift: ReDoS via $data reference [epel-9]
2439546 NEW CVE-2026-2391 fbthrift: qs's arrayLimit bypass in comma parsing allows denial of service [epel-9]

Install Failures