CVE-2026-7779
Last modified
CVE-2026-7779 is a medium-severity vulnerability rated 4.3/10 on the CVSS scale. A security flaw has been discovered in Open5GS up to 2.7.7. Affected is the function udm_nudr_dr_handle_subscription_authentication of the file /src/udm/nudr-handler.c of the component authentication-subscription Endpoint. EPSS estimates a 0.36% chance of exploitation in the next 30 days.
Description
A security flaw has been discovered in Open5GS up to 2.7.7. Affected is the function udm_nudr_dr_handle_subscription_authentication of the file /src/udm/nudr-handler.c of the component authentication-subscription Endpoint. Performing a manipulation results in denial of service. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks. The project was informed of the problem early through an issue report but has not responded yet.
Metrics
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-7779?
How severe is CVE-2026-7779?
How do I fix CVE-2026-7779?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-77784The Rank Math SEO WordPress plugin before 1.0.277 does not …2.7
- CVE-2026-77785The Rank Math SEO WordPress plugin before 1.0.277 does not …2.7
- CVE-2026-77786The Rank Math SEO WordPress plugin before 1.0.277 does not …4.9
- CVE-2026-77787The Rank Math SEO WordPress plugin before 1.0.277 does not …2.7
- CVE-2026-77788The Rank Math SEO WordPress plugin before 1.0.277 does not …4.9
- CVE-2026-77789The Stripe Payment Forms by WP Full Pay WordPress plugin be…4.3
- CVE-2026-77790The RegistrationMagic WordPress plugin before 6.0.9.4 does …5.5
- CVE-2026-77791Uncontrolled Resource Consumption vulnerability in Apache To…7.5
- CVE-2026-77792The RegistrationMagic WordPress plugin before 6.0.9.9 does …7.5
- CVE-2026-77793The RegistrationMagic WordPress plugin before 6.0.9.9 does n…5.3
- CVE-2026-77794The RegistrationMagic WordPress plugin before 6.0.9.9 does n…5.3
- CVE-2026-77795A vulnerability was identified in Dromara RuoYi-Vue-Plus up …6.3
Are you affected by CVE-2026-7779?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
