CVE-2026-2524
A flaw has been found in Open5GS 2.7.6. The impacted element is the function mmes11handlecreatesession_response of the component MME. This manipulation causes denial of service. The attack can be initiated remotely. The exploit has been published and may be used. The project was informed of the problem early through an issue report but has not responded yet.
Package Versions Affected
Automatically patch vulnerabilities without upgrading
CVSS Version



Related Resources
References
https://github.com/open5gs/open5gs/, https://vuldb.com/?id.346112, https://vuldb.com/?submit.738369, https://vuldb.com/?ctiid.346112, https://github.com/open5gs/open5gs/issues/4284, https://github.com/open5gs/open5gs/issues/4284#issue-3808462406
