CVE-2025-15156Medium· 4.3▾ SunlitA flaw has been found in omec-project UPF up to 2.1.3-dev. This affects the function handleSessionEstablishmentRequest of the file /pfcpiface/pfcpiface/messages_session.go of the component PFCP Session Establishment Request Handler. This…
▾ Sunlit zone — Low / medium · no exploitation signal
impact 23.7 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.3%
A flaw has been found in omec-project UPF up to 2.1.3-dev. This affects the function handleSessionEstablishmentRequest of the file /pfcpiface/pfcpiface/messages_session.go of the component PFCP Session Establishment Request Handler. This manipulation causes null pointer dereference. The attack may be initiated remotely. The exploit has been published and may be used. The project was informed of the problem early through an issue report but has not responded yet.
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-100895Medium· 5.3A security flaw has been discovered in Trusted Domain Project OpenARC up to 1.0.0.Beta1
CVE-2026-100890Medium· 5.3A flaw has been found in Trusted Domain Project OpenDMARC up to 1.4.2
CVE-2026-93312Medium· 4.3A flaw has been found in Freedesktop Poppler 26.07.0
CVE-2026-92417Medium· 6.5A vulnerability was found in Open5GS up to 2.8.0
CVE-2026-92413Medium· 4.3A flaw has been found in Artifex MuPDF up to b6d17493700c621c0e70036980a6ebd06d2202c9
CVE-2026-91780Low· 3.3A weakness has been identified in GNU Binutils 2.47