CVE-2026-8292Disclosure(open5gs / open5gs)

LOWCVSS 6.5 · MEDIUM

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A security vulnerability has been detected in Open5GS up to 2.7.7. The affected element is the function yuarel_parse in the library /lib/sbi/conv.c of the component NRF. Such manipulation of the argument hnrf-uri leads to denial of service. The attack may be performed from remote. The exploit has been disclosed publicly and may be used. The project was informed of the problem early through an issue report but has not responded yet.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-404

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • open5gs

Threat summary

  • 3 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • 3 total mentions across 1 day

Affected systems

Vendors
Products
open5gs

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-05-11: 3Technical Details · 2026-05-11: 205-11
Signal classification2 categories
Disclosure
266.7%
General
133.3%
Referenced assets3 URLs
Full discourse3 posts
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-8292 A security vulnerability has been detected in Open5GS up to 2.7.7. The affected element is the function yuarel_parse in the library /lib/sbi/conv.c of the component NRF… https://www.cve.org/CVERecord?id=CVE-2026-8292 ----- Traducción: CVE-2026-8292 Se … http://infoflow.cloud`

    Post summary

    CVE-2026-8292 is disclosed as a vulnerability in Open5GS up to v2.7.7, affecting the yuarel_parse function in NRF’s conv.c library, with no PoC, exploit, or patch details provided.

    0000038
    77 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-8292 A security vulnerability has been detected in Open5GS up to 2.7.7. The affected element is the function yuarel_parse in the library /lib/sbi/conv.c of the component NRF… https://www.cve.org/CVERecord?id=CVE-2026-8292

    Post summary

    A new CVE (CVE‑2026‑8292) was reported for Open5GS up to version 2.7.7, affecting the yuarel_parse function in the NRF component; a CVE record link is provided but no PoC, exploit, patch, or active exploitation details are mentioned.

    00000109
    57.5K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    General

    CVE-2026-8292 Denial of Service in Open5GS Up to 2.7.7 via yuarel_parse Function https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-8292

    Post summary

    CVE-2026-8292 describes a Denial of Service flaw in Open5GS up to v2.7.7 that targets the yuarel_parse function; the text contains only basic disclosure information without evidence of PoC, exploit code, active exploitation, or patches.

    0000043
    4.0K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appopen5gsopen5gs---

Explore more