All 38 CVE vulnerabilities found in free5gc, with AI-generated Chinese analysis, references, and POCs.
This page documents security weaknesses affecting Free5GC, an open-source 5G core network implementation managed by the Linux Foundation. It aggregates a comprehensive collection of known vulnerabilities related to this specific software product, covering the period from its initial release through recent updates. By consolidating data from multiple sources, the page aims to provide a unified view of the security posture for this critical telecommunications infrastructure component. Users can track vendor advisories to stay informed about official patches and mitigation strategies issued by the Free5GC project. Furthermore, the aggregated data allows for a deeper understanding of specific weakness classes prevalent in open-source 5G core designs, helping analysts identify common patterns in code errors or configuration flaws. Researchers and security professionals can also look up the product's vulnerability history to assess how the software has evolved over time and how responsive the development team has been to reported issues. This resource serves as a factual reference point for evaluating the risk associated with deploying Free5GC in production environments. The content is strictly informational and derived from publicly available security databases and project announcements. It does not include speculative or unverified claims. The goal is to facilitate transparent analysis of the security landscape surrounding this widely adopted open-source solution.
Vendor: n/a
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-33065 | free5GC UDM incorrectly returns 500 for empty supi path parameter in DELETE sdm-subscriptions request CWE-209 | 5.3 | - | 2026-03-20 |
| CVE-2026-33064 | free5GC UDM DataChangeNotification Procedure Panic Due to Nil Pointer Dereference CWE-478 | 7.5 | - | 2026-03-20 |
| CVE-2026-33191 | free5GC UDM vulnerable to null byte injection in URL path parameters causing 500 Internal Server Error CWE-158 | 7.5 | - | 2026-03-20 |
| CVE-2026-2525 | Free5GC PFCP UDP Endpoint denial of service CWE-404 | 5.3 | Medium | 2026-02-16 |
| CVE-2026-1976 | Free5GC SMF SessionDeletionResponse null pointer dereference CWE-476 | 5.3 | Medium | 2026-02-06 |
| CVE-2026-1975 | Free5GC pfcp_reports.go identityTriggerType null pointer dereference CWE-476 | 5.3 | Medium | 2026-02-06 |
| CVE-2026-1974 | Free5GC SMF datapath.go ResolveNodeIdToIp denial of service CWE-404 | 5.3 | Medium | 2026-02-06 |
| CVE-2026-1973 | Free5GC SMF establishPfcpSession null pointer dereference CWE-476 | 5.3 | Medium | 2026-02-06 |
All 38 known CVE vulnerabilities affecting free5gc with full Chinese analysis, references, and POCs where available.