CVE-2026-10116

Medium severity, CVSS 4.3. EPSS: 0.4% chance of exploitation in the next 30 days.

A security flaw has been discovered in Open5GS up to 2.7.7. This vulnerability affects the function ogs_sbi_xact_add in the library /lib/core/ogs-timer.c of the component ue-authentications Endpoint. Performing a manipulation results in denial of service. The attack may be initiated remotely. The exploit has been released to the public and may be used for attacks. Applying a patch is the recommended action to fix this issue.

Published 2026-05-30. Last modified 2026-07-22.