CVE-2026-8186: OPEN5GS
High severity, CVSS 7.5. EPSS: 0.9% chance of exploitation in the next 30 days.
A vulnerability was detected in Open5GS up to 2.7.7. This affects the function ogs_sbi_client_send_via_scp_or_sepp in the library lib/sbi/client.c of the component NF. Performing a manipulation results in out-of-bounds read. The attack is possible to be carried out remotely. The patch is named d5bc487fcf9ea87d2b03f2ef95123af344773bfb. It is suggested to install a patch to address this issue.
Affected products
- OPEN5GS OPEN5GS: up to and including 2.7.7
Published 2026-05-09. Last modified 2026-07-24.