CVE-2026-43869 | Apache Thrift up to 0.22.x TSSLTransportFactory.java certificate host validation (EUVD-2026-27237 / Nessus ID 312239)
A vulnerability classified as critical was found in Apache Thrift up to 0.22.x. Impacted is an unknown function of the file TSSLTransportFactory.java. Executing a manipulation can lead to certificate with host mismatch.
This vulnerability is tracked as CVE-2026-43869. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is advised.