CVE-2026-40343
Last modified
CVE-2026-40343 is a medium-severity vulnerability rated 5.8/10 on the CVSS scale. free5GC UDR is the user data repository (UDR) for free5GC, an an open-source project for 5th generation (5G) mobile core networks. In versions up to and including 1.4.2, a fail-open request handling flaw in the UDR service causes the `/nudr-dr/v2/policy-data/subs-to-notify` POST handler to continue processing requests even after request body retrieval or deserialization errors. EPSS estimates a 9.96% chance of exploitation in the next 30 days.
Description
free5GC UDR is the user data repository (UDR) for free5GC, an an open-source project for 5th generation (5G) mobile core networks. In versions up to and including 1.4.2, a fail-open request handling flaw in the UDR service causes the `/nudr-dr/v2/policy-data/subs-to-notify` POST handler to continue processing requests even after request body retrieval or deserialization errors. This may allow unintended creation of Policy Data notification subscriptions with invalid, empty, or partially processed input, depending on downstream processor behavior. As of time of publication, a patched version is not available.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Free5gc | Free5gc | <= 4.2.1 |
| Free5gc | Udr | <= 1.4.2 |
References
- https://github.com/free5gc/free5gc/security/advisories/GHSA-jwch-w7wh-gqjmMitigation, Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2026-40343?
How severe is CVE-2026-40343?
How do I fix CVE-2026-40343?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-40337The Sentry kernel is a high security level micro-kernel impl…5.1
- CVE-2026-40338libgphoto2 is a camera access and control library. Versions …5.2
- CVE-2026-40339libgphoto2 is a camera access and control library. Versions …5.2
- CVE-2026-40340libgphoto2 is a camera access and control library. Versions …6.1
- CVE-2026-40341libgphoto2 is a camera access and control library. In versio…3.5
- CVE-2026-40342Firebird is an open-source relational database management sy…9.9
- CVE-2026-40344MinIO is a high-performance object storage system. Starting …8.2
- CVE-2026-40346NocoBase is an AI-powered no-code/low-code platform for buil…6.5
- CVE-2026-40347Python-Multipart is a streaming multipart parser for Python.…5.3
- CVE-2026-40348Movary is a self hosted web app to track and rate a user's w…7.7
- CVE-2026-40349Movary is a self hosted web app to track and rate a user's w…8.8
- CVE-2026-4035A vulnerability in mlflow/mlflow versions prior to 3.11.0 al…7.7
Are you affected by CVE-2026-40343?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
