CVE-2026-8268: Open5GS SMF OpenAPI_list_create denial of service
A vulnerability has been found in Open5GS up to 2.7.7. This issue affects the function OpenAPIlistcreate of the component SMF. Such manipulation leads to denial of service. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The project was informed of the problem early through an issue report but has not responded yet.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-8268?
CVE-2026-8268 is classified as a denial of service vulnerability in Open5GS SMF up to version 2.7.7.
How do I fix CVE-2026-8268?
To fix CVE-2026-8268, you should upgrade Open5GS SMF to the latest version that addresses the vulnerability.
What is the impact of CVE-2026-8268?
The impact of CVE-2026-8268 is a potential denial of service that can be exploited remotely.
Which versions of Open5GS are affected by CVE-2026-8268?
Open5GS SMF versions up to and including 2.7.7 are affected by CVE-2026-8268.
Can CVE-2026-8268 be exploited remotely?
Yes, CVE-2026-8268 can be exploited remotely, leading to denial of service.