Skip to content

[GHSA-7pwc-h2j2-rjgj] Apache Thrift has an Improper Validation of Certificate with Host Mismatch Vulnerability#7723

Open
HTHou wants to merge 1 commit into
HTHou/advisory-improvement-7723from
HTHou-GHSA-7pwc-h2j2-rjgj
Open

[GHSA-7pwc-h2j2-rjgj] Apache Thrift has an Improper Validation of Certificate with Host Mismatch Vulnerability#7723
HTHou wants to merge 1 commit into
HTHou/advisory-improvement-7723from
HTHou-GHSA-7pwc-h2j2-rjgj

Conversation

@HTHou
Copy link
Copy Markdown

@HTHou HTHou commented May 18, 2026

Updates

  • Affected products

Comments
There is the Patched version.

Copilot AI review requested due to automatic review settings May 18, 2026 08:39
@github-actions github-actions Bot changed the base branch from main to HTHou/advisory-improvement-7723 May 18, 2026 08:40
Copy link
Copy Markdown
Contributor

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

This PR updates the GitHub-reviewed advisory for GHSA-7pwc-h2j2-rjgj to reflect Apache Thrift 0.23.0 as the patched version for the affected Maven package.

Changes:

  • Replaces last_affected with fixed: 0.23.0.
  • Adds the last known affected version range metadata.
  • Updates the advisory modified timestamp.

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants