Package impact

golang Go / github.com/free5gc/udm

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2026-42459 high 7.5 7.5 3d ago free5GC is an open-source implementation of the 5G core network. Prior to 4.2.2, the free5GC UDM component fails to validate the supi path parameter in six GET handlers of the nudm-sdm (Subscriber Da…
CVE-2026-33192 unknown 2mo ago free5GC UDM incorrectly returns 500 for empty supi path parameter in PATCH sdm-subscriptions reques in github.com/free5gc/udm
CVE-2026-33191 unknown 2mo ago free5GC UDM vulnerable to null byte injection in URL path parameters causing 500 Internal Server Error in github.com/free5gc/udm
CVE-2026-33065 unknown 2mo ago free5GC UDM incorrectly returns 500 for empty supi path parameter in DELETE sdm-subscriptions request in github.com/free5gc/udm
CVE-2026-33064 unknown 2mo ago free5GC UDM DataChangeNotification Procedure Panic Due to Nil Pointer Dereference in github.com/free5gc/udm
CVE-2025-60633 unknown 6mo ago Free5GC is vulnerable to DoS via the Nudm_SubscriberDataManagement API in github.com/free5gc/openapi
CVE-2023-46324 unknown 3y ago free5GC udm vulnerable to Invalid Curve Attack