CVE-2025-15530: OPEN5GS

High severity, CVSS 7.5. EPSS: 0.8% chance of exploitation in the next 30 days.

A vulnerability was determined in Open5GS up to 2.7.6. This affects the function sgwc_s11_handle_create_indirect_data_forwarding_tunnel_request of the file /src/sgwc/s11-handler.c. Executing a manipulation can lead to reachable assertion. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized. The issue report is flagged as already-fixed.

Affected products

  • OPEN5GS OPEN5GS: up to and including 2.7.6

Published 2026-01-17. Last modified 2026-06-17.