CVE-2024-45773: Facebook Thrift
High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.
A use-after-free vulnerability involving upgradeToRocket requests can cause the application to crash or potentially result in code execution or other undesirable effects. This issue affects Facebook Thrift prior to v2024.09.09.00.
Affected products
- Facebook Facebook Thrift: from v0.0.0.0, before v2024.09.09.00 (fixed in v2024.09.09.00)
- Facebook Thrift: from 2024.09.09.00, before 2024.09.23.00 (fixed in 2024.09.23.00)
Published 2024-09-27. Last modified 2026-06-17.