Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
2242769
AlmaLinux
5975
Alpaquita
16176
Alpine
4655
Android
3708
Azure Linux
17971
BellSoft Hardened Containers
770
Bitnami
9501
Chainguard
1048720
CleanStart
5432
CRAN
14
crates.io
2768
Debian
68992
Echo
7853
GHC
3
GIT
109121
GitHub Actions
55
Go
9332
Hackage
33
Hex
365
Julia
1713
Linux
29975
Mageia
6237
Maven
7055
MinimOS
148659
npm
229271
NuGet
1869
opam
29
openEuler
8900
openSUSE
14647
OSS-Fuzz
4019
Packagist
7103
Pub
11
PyPI
25495
Red Hat
23535
Rocky Linux
4344
Root
19650
RubyGems
5369
SUSE
23455
SwiftURL
61
TuxCare
9974
Ubuntu
66090
VSCode
21
Wolfi
293843
ID
Packages
Summary
Published
arrow_upward
Attributes
CVE-2026-94043
github.com/free5gc/amf
github.com/free5gc/free5gc
Free5GC Gmm handler.go race condition
20 Sep
Fix available
Severity - 5.5 (Medium)
CVE-2026-47780
github.com/free5gc/free5gc
free5GC: UDR Improper ueId validation in free5GC EE subscription handlers allows arbitrary identifier persistence
15 Sep
No fix available
Severity - 6.9 (Medium)
GO-2026-6316
Go/github.com/free5gc/free5gc
free5GC NRF nnrf-nfm lacks NF Profile input validation — enables NF Registration Poisoning with arbitrary service endpoints in github.com/free5gc/free5gc
02 Sep
Fix available
GO-2026-6326
Go/github.com/free5gc/ausf
free5GC AUSF authentication contexts can be overwritten by concurrent requests for the same SUPI in github.com/free5gc/ausf
02 Sep
No fix available
GO-2026-6328
Go/github.com/free5gc/ausf
free5GC AUSF uses non-constant-time authentication comparisons and logs XRES* in 5G-AKA in github.com/free5gc/ausf
02 Sep
Fix available
GHSA-fp46-6vfw-gc9c
Go/github.com/free5gc/ausf
free5GC AUSF uses non-constant-time authentication comparisons and logs XRES* in 5G-AKA
28 Aug
Fix available
Severity - 3.7 (Low)
CVE-2026-55785
github.com/free5gc/ausf
free5GC AUSF uses non-constant-time authentication comparisons and logs XRES* in 5G-AKA
28 Aug
Fix available
Severity - 3.7 (Low)
GHSA-334q-h5g3-fpxv
Go/github.com/free5gc/ausf
free5GC AUSF authentication contexts can be overwritten by concurrent requests for the same SUPI
28 Aug
No fix available
Severity - 7.5 (High)
GHSA-x8mj-6p3q-g5pp
Go/github.com/free5gc/free5gc
free5GC NRF nnrf-nfm lacks NF Profile input validation — enables NF Registration Poisoning with arbitrary service endpoints
28 Aug
Fix available
Severity - 9.3 (Critical)
CVE-2026-55068
github.com/free5gc/free5gc
github.com/free5gc/nrf
free5GC: NRF nnrf-nfm lacks NF Profile input validation — enables NF Registration Poisoning with arbitrary service endpoints
28 Aug
Fix available
Severity - 9.3 (Critical)
GO-2026-6161
Go/github.com/free5gc/ausf
Go/github.com/free5gc/free5gc
free5GC AUSF: null byte injection in supiOrSuci causes HTTP 500 internal service failure in github.com/free5gc/ausf
18 Aug
Fix available
GHSA-qj55-47fp-p62j
Go/github.com/free5gc/ausf
Go/github.com/free5gc/free5gc
free5GC AUSF: null byte injection in supiOrSuci causes HTTP 500 internal service failure
31 Jul
Fix available
Severity - 6.9 (Medium)
CVE-2026-53551
github.com/free5gc/ausf
github.com/free5gc/free5gc
free5GC AUSF: null byte injection in supiOrSuci causes HTTP 500 internal service failure
31 Jul
Fix available
Severity - 6.9 (Medium)
GO-2026-5570
Go/github.com/free5gc/nrf
Free5gc NRF is vulnerable to scope validation bypass via maliciously crafted targetNF value in github.com/free5gc/nrf
07 Jul
Fix available
GO-2026-5767
Go/github.com/free5gc/amf
Free5GC AMF is vulnerable to DoS through its HandleRegistrationComplete function in github.com/free5gc/amf
25 Jun
Fix available
GO-2026-5642
Go/github.com/free5gc/nef
free5GC's NEF nnef-pfdmanagement API is unauthenticated; forged bearer tokens can read PFD data and create/delete PFD subscriptions in github.com/free5gc/nef
25 Jun
No fix available
Load more...
Vulnerability Database - OSV