SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-86212

MEDIUM · CVSS 4.3 EPSS 0.28% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-06 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

Open5GS versions 2.7.7 and 2.8.0 are vulnerable due to improper authorization in the AMF/MME component, which can be exploited remotely. This vulnerability poses a risk of unauthorized access, potentially compromising the integrity of the system. Organizations using these specific versions should prioritize applying the patch identified by 9468de94caed2fc940f4a23cbf734651896d0fde to mitigate the risk.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-86212
Severity
MEDIUM
CVSS
4.3
EPSS
0.28%

Original NVD Description

A vulnerability has been found in Open5GS 2.7.7/2.8.0. This vulnerability affects unknown code of the component AMF/MME. The manipulation leads to improper authorization. The attack is possible to be carried out remotely. The exploit has been disclosed to the public and may be used. The identifier of the patch is 9468de94caed2fc940f4a23cbf734651896d0fde. To fix this issue, it is recommended to deploy a patch.