Vulnerability index

Browse CVEs

81 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2026-1683 A vulnerability has been found in Free5GC SMF up to 4.1.0. Affected by this vulnerability is the function HandlePfcpSessionReportRequest of the file … Free5gc after 4.1.0 Fix from $1,9502026-01-30 HIGH 7.5 CVE-2025-66720 Null pointer dereference in free5gc pcf 1.4.0 in file internal/sbi/processor/ampolicy.go in function HandleDeletePoliciesPolAssoId. Pcf Patch available Fix from $1,9502026-01-23 CRITICAL 9.1 CVE-2025-66719 An issue was discovered in Free5gc NRF 1.4.0. In the access-token generation logic of free5GC, the AccessTokenScopeCheck() function in file internal/… Nrf Patch available Fix from $2,3002026-01-23 HIGH 7.5 CVE-2025-65561 An issue was discovered in function LocalNode.Sess in free5GC 4.1.0 allowing attackers to cause a denial of service or other unspecified impacts via … Free5gc Patch available Fix from $1,9502025-12-18 HIGH 7.5 CVE-2025-65562 The free5GC UPF suffers from a lack of bounds checking on the SEID when processing PFCP Session Deletion Requests. An unauthenticated remote attacker… Free5gc No fix yet Fix from $1,9502025-12-18 HIGH 7.5 CVE-2025-60638 An issue was discovered in Free5GC v4.0.0 and v4.0.1 allowing an attacker to cause a denial of service via crafted POST request to the Nnssf_NSSAIAva… Free5gc No fix yet Fix from $1,9502025-11-24 MEDIUM 6.5 CVE-2025-60633 An issue was discovered in Free5GC v4.0.0 and v4.0.1 allowing an attacker to cause a denial of service via the Nudm_SubscriberDataManagement API. Free5gc No fix yet Fix from $1,6002025-11-24 MEDIUM 6.5 CVE-2025-60632 An issue was discovered in Free5GC v4.0.0 and v4.0.1 allowing an attacker to cause a denial of service via crafted POST request to the Npcf_BDTPolicy… Free5gc Mitigation only Fix from $1,6002025-11-24 HIGH 7.5 CVE-2025-63679 free5gc v4.1.0 and before is vulnerable to Buffer Overflow. When AMF receives an UplinkRANConfigurationTransfer NGAP message from a gNB, the AMF proc… Free5gc after 4.1.0 Fix from $1,9502025-11-12 HIGH 7.5 CVE-2025-56394 Free5gc 4.0.1 is vulnerable to Buffer Overflow. The AMF incorrectly validates the 5GS mobile identity, resulting in slice reference overflow. Free5gc Patch available Fix from $1,9502025-09-23 MEDIUM 5.4 CVE-2025-29632 Buffer Overflow vulnerability in Free5gc v.4.0.0 allows a remote attacker to cause a denial of service via the AMF, NGAP, security.go, handler_genera… Free5gc No fix yet Fix from $1,6002025-05-29 HIGH 7.5 CVE-2023-49391 An issue was discovered in free5GC version 3.3.0, allows remote attackers to execute arbitrary code and cause a denial of service (DoS) on AMF compon… Free5gc No fix yet Fix from $1,9502023-12-22 MEDIUM 5.5 CVE-2023-47025 An issue in Free5gc v.3.3.0 allows a local attacker to cause a denial of service via the free5gc-compose component. Free5gc No fix yet Fix from $1,6002023-11-16 HIGH 7.5 CVE-2023-47345 Buffer Overflow vulnerability in free5gc 3.3.0 allows attackers to cause a denial of service via crafted PFCP message with malformed PFCP Heartbeat m… Free5gc No fix yet Fix from $1,9502023-11-15 HIGH 7.5 CVE-2023-47347 Buffer Overflow vulnerability in free5gc 3.3.0 allows attackers to cause a denial of service via crafted PFCP messages whose Sequence Number is mutat… Free5gc No fix yet Fix from $1,9502023-11-15 HIGH 7.5 CVE-2023-47346 Buffer Overflow vulnerability in free5gc 3.3.0, UPF 1.2.0, and SMF 1.2.0 allows attackers to cause a denial of service via crafted PFCP messages. Free5gc No fix yet Fix from $1,9502023-11-13 HIGH 7.5 CVE-2023-46324 pkg/suci/suci.go in free5GC udm before 1.2.0, when Go before 1.19 is used, allows an Invalid Curve Attack because it may compute a shared secret via … Udm 1.2.0+ Fix from $1,9502023-10-23 CRITICAL 9.8 CVE-2023-4659 Cross-Site Request Forgery vulnerability, whose exploitation could allow an attacker to perform different actions on the platform as an administrator… Free5gc Mitigation only Fix from $2,3002023-10-02 HIGH 7.5 CVE-2022-38871 In Free5gc v3.0.5, the AMF breaks due to malformed NAS messages. Free5gc No fix yet Fix from $1,9502022-11-18 HIGH 7.5 CVE-2022-38870 Free5gc v3.2.1 is vulnerable to Information disclosure. Free5gc No fix yet Fix from $1,9502022-10-25 MEDIUM 5.5 CVE-2022-43677 In free5GC 3.2.1, a malformed NGAP message can crash the AMF and NGAP decoders via an index-out-of-range panic in aper.GetBitString. Free5gc No fix yet Fix from $1,6002022-10-24