Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
2210071
AlmaLinux
5931
Alpaquita
16087
Alpine
4608
Android
3677
Azure Linux
17651
BellSoft Hardened Containers
754
Bitnami
9325
Chainguard
1030749
CleanStart
3846
CRAN
14
crates.io
2738
Debian
68472
Echo
7444
GHC
3
GIT
108258
GitHub Actions
55
Go
9245
Hackage
33
Hex
364
Julia
1713
Linux
29974
Mageia
6232
Maven
7044
MinimOS
144672
npm
228850
NuGet
1869
opam
29
openEuler
8800
openSUSE
14480
OSS-Fuzz
4013
Packagist
7098
Pub
11
PyPI
25181
Red Hat
23387
Rocky Linux
4305
Root
19583
RubyGems
5326
SUSE
23350
SwiftURL
60
TuxCare
9606
Ubuntu
65406
VSCode
21
Wolfi
289807
ID
Packages
Summary
Published
arrow_upward
Attributes
CVE-2026-94043
github.com/free5gc/amf
github.com/free5gc/free5gc
Free5GC Gmm handler.go race condition
20 Sep
Fix available
Severity - 5.5 (Medium)
CVE-2026-47780
github.com/free5gc/free5gc
free5GC: UDR Improper ueId validation in free5GC EE subscription handlers allows arbitrary identifier persistence
15 Sep
No fix available
Severity - 6.9 (Medium)
GO-2026-6316
Go/github.com/free5gc/free5gc
free5GC NRF nnrf-nfm lacks NF Profile input validation — enables NF Registration Poisoning with arbitrary service endpoints in github.com/free5gc/free5gc
02 Sep
Fix available
GO-2026-6326
Go/github.com/free5gc/ausf
free5GC AUSF authentication contexts can be overwritten by concurrent requests for the same SUPI in github.com/free5gc/ausf
02 Sep
No fix available
GO-2026-6328
Go/github.com/free5gc/ausf
free5GC AUSF uses non-constant-time authentication comparisons and logs XRES* in 5G-AKA in github.com/free5gc/ausf
02 Sep
Fix available
GHSA-fp46-6vfw-gc9c
Go/github.com/free5gc/ausf
free5GC AUSF uses non-constant-time authentication comparisons and logs XRES* in 5G-AKA
28 Aug
Fix available
Severity - 3.7 (Low)
CVE-2026-55785
github.com/free5gc/ausf
free5GC AUSF uses non-constant-time authentication comparisons and logs XRES* in 5G-AKA
28 Aug
Fix available
Severity - 3.7 (Low)
GHSA-334q-h5g3-fpxv
Go/github.com/free5gc/ausf
free5GC AUSF authentication contexts can be overwritten by concurrent requests for the same SUPI
28 Aug
No fix available
Severity - 7.5 (High)
GHSA-x8mj-6p3q-g5pp
Go/github.com/free5gc/free5gc
free5GC NRF nnrf-nfm lacks NF Profile input validation — enables NF Registration Poisoning with arbitrary service endpoints
28 Aug
Fix available
Severity - 9.3 (Critical)
CVE-2026-55068
github.com/free5gc/free5gc
github.com/free5gc/nrf
free5GC: NRF nnrf-nfm lacks NF Profile input validation — enables NF Registration Poisoning with arbitrary service endpoints
28 Aug
Fix available
Severity - 9.3 (Critical)
GO-2026-6161
Go/github.com/free5gc/ausf
Go/github.com/free5gc/free5gc
free5GC AUSF: null byte injection in supiOrSuci causes HTTP 500 internal service failure in github.com/free5gc/ausf
18 Aug
Fix available
GHSA-qj55-47fp-p62j
Go/github.com/free5gc/ausf
Go/github.com/free5gc/free5gc
free5GC AUSF: null byte injection in supiOrSuci causes HTTP 500 internal service failure
31 Jul
Fix available
Severity - 6.9 (Medium)
CVE-2026-53551
github.com/free5gc/ausf
github.com/free5gc/free5gc
free5GC AUSF: null byte injection in supiOrSuci causes HTTP 500 internal service failure
31 Jul
Fix available
Severity - 6.9 (Medium)
GO-2026-5570
Go/github.com/free5gc/nrf
Free5gc NRF is vulnerable to scope validation bypass via maliciously crafted targetNF value in github.com/free5gc/nrf
07 Jul
Fix available
GO-2026-5767
Go/github.com/free5gc/amf
Free5GC AMF is vulnerable to DoS through its HandleRegistrationComplete function in github.com/free5gc/amf
25 Jun
Fix available
GO-2026-5642
Go/github.com/free5gc/nef
free5GC's NEF nnef-pfdmanagement API is unauthenticated; forged bearer tokens can read PFD data and create/delete PFD subscriptions in github.com/free5gc/nef
25 Jun
No fix available
Load more...
Vulnerability Database - OSV