cvedb.io
CVE-2026-1974
MEDIUM · CVSS 5.3
EPSS exploitation probability: 0%
Published 2026-02-06T02:16:05.810 · Last modified 2026-06-17T10:16:48.597

Summary

A vulnerability was identified in Free5GC up to 4.1.0. This affects the function ResolveNodeIdToIp of the file internal/sbi/processor/datapath.go of the component SMF. The manipulation leads to denial of service. Remote exploitation of the attack is possible. The exploit is publicly available and might be used. It is recommended to apply a patch to fix this issue.

Affected products

free5gc — free5gc

Does this affect you?

Add your gear to cvedb and we'll alert you only when free5gc ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.