solar224
9 exploits
Active since Feb 2026
free5GC: PCF Npcf_SMPolicyControl missing authentication middleware allows unauthenticated access to SM policy handlers and disclosure of subscriber SUPI
CVSS 8.2
free5GC: PCF npcf-policyauthorization POST /app-sessions panics on suppFeat=1 with missing AfRoutReq via nil pointer dereference
CVSS 6.5
free5GC: NEF crashes via logger.Fatal on PFD notification delivery failure (attacker-controlled notifyUri)
CVSS 7.5
free5GC: NEF 3gpp-pfd-management PATCH applications/{appId} panics on UDR access failure due to nil ProblemDetails dereference
CVSS 7.5
free5GC PCF: Memory Leak via CORS Middleware Registration in HTTP Handler Leads to Denial of Service
CVSS 7.5
free5GC CHF has Out-of-Bounds Slice Access that Leads to DoS
CVSS 6.5
free5GC UDR <=1.4.1 - Info Disclosure
CVSS 5.3
free5GC UDR <=1.4.1 - Info Disclosure
CVSS 5.3
free5GC UDR <1.4.1 - Info Disclosure
CVSS 5.3