CVE Tools

FREE5GC

72 CVEs tracked since 2023. Since Nov 2023, none of them reached CISA KEV.

FREE5GC CVEs per month

Nov 2023 to May 2026. Point at a month, or focus the strip and use the arrow keys.
FREE5GC CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2023-1140
2023-12null or fewer
2024-01null or fewer
2024-02null or fewer
2024-03null or fewer
2024-04null or fewer
2024-05null or fewer
2024-06null or fewer
2024-07null or fewer
2024-08null or fewer
2024-09null or fewer
2024-10null or fewer
2024-11null or fewer
2024-12null or fewer
2025-01null or fewer
2025-02null or fewer
2025-03null or fewer
2025-04null or fewer
2025-05null or fewer
2025-06null or fewer
2025-07null or fewer
2025-08null or fewer
2025-09null or fewer
2025-10null or fewer
2025-1140
2025-12null or fewer
2026-0150
2026-02220
2026-0380
2026-0490
2026-05200

Products

The products that kept showing up in FREE5GC's monthly top three, with their CVEs summed over those months.

  1. FREE5GC567 months
  2. Smf83 months
  3. Udm82 months
  4. Pcf22 months
  5. Chf11 month
  6. Udr11 month
  7. Upf11 month

Latest CVEs

The 15 most recently published vulnerabilities affecting FREE5GC.

  1. CVE-2026-47780free5GC: UDR Improper ueId validation in free5GC EE subscription handlers allows arbitrary identifier persistence—
  2. CVE-2026-55785free5GC AUSF uses non-constant-time authentication comparisons and logs XRES* in 5G-AKA3.7
  3. CVE-2026-55784free5GC AUSF authentication contexts can be overwritten by concurrent requests for the same SUPI7.5
  4. CVE-2026-55068free5GC: NRF nnrf-nfm lacks NF Profile input validation — enables NF Registration Poisoning with arbitrary service endpoints—
  5. CVE-2026-53551free5GC AUSF: null byte injection in supiOrSuci causes HTTP 500 internal service failure—
  6. CVE-2026-42081free5GC: UE Security Capability bypass on NGAP PathSwitchRequest6.1
  7. CVE-2026-42082free5GC: Missing Concurrent NAS SMC Validation During NGAP Handover3.7
  8. CVE-2026-42083free5GC: PCF Npcf_SMPolicyControl missing authentication middleware allows unauthenticated access to SM policy handlers and disclosure of subscriber SUPI8.2
  9. CVE-2026-42459free5GC: Improper Input Validation and Generation of Error Message Containing Sensitive Information in github.com/free5gc/udm7.5
  10. CVE-2026-44315free5GC: NEF 3gpp-pfd-management API is unauthenticated; forged bearer tokens can create, read, and delete PFD transactions9.4
  11. CVE-2026-44316free5GC: PCF npcf-smpolicycontrol POST /sm-policies panics on downstream UDR/OpenAPI 404 via nil pointer dereference7.5
  12. CVE-2026-44317free5GC: PCF npcf-policyauthorization POST /app-sessions panics on suppFeat=1 with missing AfRoutReq via nil pointer dereference6.5
  13. CVE-2026-44319free5GC: NEF crashes via logger.Fatal on PFD notification delivery failure (attacker-controlled notifyUri)7.5
  14. CVE-2026-44320free5GC: NEF nnef-callback route group is unauthenticated; forged callback requests are accepted into the processing path7.3
  15. CVE-2026-44321free5GC: SMF UPI POST /upi/v1/upNodesLinks exits the SMF process on overlapping UE pools (unauthenticated, reachable Fatalf)7.5

The record

Peak rank
#49 in Feb 2026
Busiest month shown
Feb 2026, 22 CVEs
Months with a KEV entry
0 since Nov 2023
Monthly snapshots
7 since 2023
FREE5GC's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store