Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
CVE-2026-94043
  • github.com/free5gc/amf
  • github.com/free5gc/free5gc
Free5GC Gmm handler.go race condition 20 Sep
  • Fix available
  • Severity - 5.5 (Medium)
CVE-2026-47780
  • github.com/free5gc/free5gc
free5GC: UDR Improper ueId validation in free5GC EE subscription handlers allows arbitrary identifier persistence 15 Sep
  • No fix available
  • Severity - 6.9 (Medium)
GO-2026-6316
  • Go/github.com/free5gc/free5gc
free5GC NRF nnrf-nfm lacks NF Profile input validation — enables NF Registration Poisoning with arbitrary service endpoints in github.com/free5gc/free5gc 02 Sep
  • Fix available
GO-2026-6326
  • Go/github.com/free5gc/ausf
free5GC AUSF authentication contexts can be overwritten by concurrent requests for the same SUPI in github.com/free5gc/ausf 02 Sep
  • No fix available
GO-2026-6328
  • Go/github.com/free5gc/ausf
free5GC AUSF uses non-constant-time authentication comparisons and logs XRES* in 5G-AKA in github.com/free5gc/ausf 02 Sep
  • Fix available
GHSA-fp46-6vfw-gc9c
  • Go/github.com/free5gc/ausf
free5GC AUSF uses non-constant-time authentication comparisons and logs XRES* in 5G-AKA 28 Aug
  • Fix available
  • Severity - 3.7 (Low)
CVE-2026-55785
  • github.com/free5gc/ausf
free5GC AUSF uses non-constant-time authentication comparisons and logs XRES* in 5G-AKA 28 Aug
  • Fix available
  • Severity - 3.7 (Low)
GHSA-334q-h5g3-fpxv
  • Go/github.com/free5gc/ausf
free5GC AUSF authentication contexts can be overwritten by concurrent requests for the same SUPI 28 Aug
  • No fix available
  • Severity - 7.5 (High)
GHSA-x8mj-6p3q-g5pp
  • Go/github.com/free5gc/free5gc
free5GC NRF nnrf-nfm lacks NF Profile input validation — enables NF Registration Poisoning with arbitrary service endpoints 28 Aug
  • Fix available
  • Severity - 9.3 (Critical)
CVE-2026-55068
  • github.com/free5gc/free5gc
  • github.com/free5gc/nrf
free5GC: NRF nnrf-nfm lacks NF Profile input validation — enables NF Registration Poisoning with arbitrary service endpoints 28 Aug
  • Fix available
  • Severity - 9.3 (Critical)
GO-2026-6161
  • Go/github.com/free5gc/ausf
  • Go/github.com/free5gc/free5gc
free5GC AUSF: null byte injection in supiOrSuci causes HTTP 500 internal service failure in github.com/free5gc/ausf 18 Aug
  • Fix available
GHSA-qj55-47fp-p62j
  • Go/github.com/free5gc/ausf
  • Go/github.com/free5gc/free5gc
free5GC AUSF: null byte injection in supiOrSuci causes HTTP 500 internal service failure 31 Jul
  • Fix available
  • Severity - 6.9 (Medium)
CVE-2026-53551
  • github.com/free5gc/ausf
  • github.com/free5gc/free5gc
free5GC AUSF: null byte injection in supiOrSuci causes HTTP 500 internal service failure 31 Jul
  • Fix available
  • Severity - 6.9 (Medium)
GO-2026-5570
  • Go/github.com/free5gc/nrf
Free5gc NRF is vulnerable to scope validation bypass via maliciously crafted targetNF value in github.com/free5gc/nrf 07 Jul
  • Fix available
GO-2026-5767
  • Go/github.com/free5gc/amf
Free5GC AMF is vulnerable to DoS through its HandleRegistrationComplete function in github.com/free5gc/amf 25 Jun
  • Fix available
GO-2026-5642
  • Go/github.com/free5gc/nef
free5GC's NEF nnef-pfdmanagement API is unauthenticated; forged bearer tokens can read PFD data and create/delete PFD subscriptions in github.com/free5gc/nef 25 Jun
  • No fix available