Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
A high-severity vulnerability (CVE-2026-92417) exists in Open5GS up to version 2.8.0 in the PFCP Handler component. The flaw is a null pointer dereference in the function ogs_pfcp_parse_volume_measurement within lib/pfcp/types.c. This vulnerability can be triggered remotely and may cause a denial of service. A patch identified by commit 8f07b507b78ff94776f2cd49276eb116ed93d7f2 is available to remediate the issue. Join the discussion | GCVE Database | 09/16/2026, 21:32:45 UTC Added: 09/17/2026, 02:00:11 UTC |
0 CVE-2026-92417 is a high-severity vulnerability in Open5GS up to version 2.8.0. It involves a null pointer dereference in the function ogs_pfcp_parse_volume_measurement within the PFCP Handler component. This flaw can be triggered remotely and may cause a denial of service or crash. A patch identified by commit 8f07b507b78ff94776f2cd49276eb116ed93d7f2 is available to remediate the issue. Join the discussion | CVE Database V5 | 09/16/2026, 18:00:08 UTC Added: 09/16/2026, 18:32:07 UTC |
0 CVE-2026-92416 is a medium-severity vulnerability in Open5GS up to version 2.8.0. It affects the PFCP Session Report Request Handler component, specifically the function smf_n4_handle_session_report_request. The vulnerability allows remote attackers to trigger a reachable assertion, potentially causing a denial of service or disruption. A patch identified by commit e5f0c06d0f2d9613b003daa1cfa3ba8a4bd157e9 is available to address this issue. Join the discussion | CVE Database V5 | 09/16/2026, 17:45:09 UTC Added: 09/16/2026, 18:02:08 UTC |
0 A security flaw has been discovered in Open5GS up to 2.7.7. Affected by this vulnerability is an unknown functionality of the file lib/pfcp/handler.c of the component PFCP Message Handler. Performing a manipulation results in denial of service. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks. The patch is named 028e1dbb5e3271035ccee906ef417a97fc523f71. Applying a patch is the recommended action to fix this issue. CVE-2025-29339 describes a different assertion failure vulnerability in Open5GS UPF. Join the discussion | CVE Database V5 | 09/15/2026, 16:45:07 UTC Added: 09/15/2026, 17:02:11 UTC |
0 A security flaw has been discovered in Open5GS up to 2.7.x. Affected is the function amf_nnrf_try_old_amf_discovery_fallback of the file src/amf/nnrf-handler.c of the component Old AMF Discovery Fallback. The manipulation of the argument discovery_option results in use after free. The attack may be performed from remote. The patch is identified as ddd683a35f8aaac2b7b9884a24cd53bddfc65238. Applying a patch is advised to resolve this issue. Join the discussion | CVE Database V5 | 09/14/2026, 10:45:08 UTC Added: 09/14/2026, 11:02:03 UTC |
0 CVE-2026-78186 is a medium severity vulnerability in Open5GS up to version 2.8.0. It involves a reachable assertion flaw in the HSS component, specifically in the src/hss/hss-cx-path.c file. The vulnerability is triggered by manipulation of the User-Name argument and can be exploited remotely. An exploit has been published. A patch identified by commit c9abe09421eb99bbf1cd7862a3d375e58a4eb9e4 is available to fix this issue. Join the discussion | CVE Database V5 | 08/24/2026, 04:15:08 UTC Added: 08/24/2026, 04:37:53 UTC |
A vulnerability in Open5GS 2.8.0 affects the Rx AA-Request Handler component, specifically the function pcrf_rx_aar_cb. This vulnerability allows a remote attacker to cause an out-of-bounds read by manipulating input. The issue is identified as CVE-2026-78157 and has a CVSS score of 7.4. A patch has been created to address this vulnerability, but no explicit patch link or vendor advisory is provided in the data. Join the discussion | GCVE Database | 08/24/2026, 03:31:04 UTC Added: 08/24/2026, 13:51:57 UTC |
Open5GS version 2.8.0 contains a heap-based buffer overflow vulnerability in the S6a Authentication-Information-Request Handler component. The flaw exists in the function hss_ogs_diam_s6a_air_cb when processing the Visited-PLMN-Id argument. This vulnerability can be exploited remotely and may lead to partial confidentiality, integrity, and availability impact. A patch identified by commit a9c82ee0b590d76a581b0580cb46b598984e2392 addresses this issue. Join the discussion | GCVE Database | 08/24/2026, 00:33:11 UTC Added: 08/24/2026, 13:51:57 UTC |
0 CVE-2026-78158 is a medium severity vulnerability in Open5GS version 2.8.0 involving improper authorization in the AMF UEContextReleaseRequest Path Handler component. The flaw allows remote attackers with low privileges to manipulate the system, potentially bypassing authorization controls. No patch or vendor advisory is currently provided, and no known exploits are reported in the wild. Join the discussion | CVE Database V5 | 08/24/2026, 00:15:08 UTC Added: 08/24/2026, 00:22:44 UTC |
0 CVE-2026-78157 is an out-of-bounds read vulnerability in Open5GS version 2.8.0 affecting the pcrf_rx_aar_cb function in the Rx AA-Request Handler component. The vulnerability can be triggered remotely by manipulating input to this function. A patch has been identified to fix this issue. Join the discussion | CVE Database V5 | 08/24/2026, 00:00:13 UTC Added: 08/24/2026, 00:22:44 UTC |
Showing 1 to 10 of 127 results