CVE ID :CVE-2026-44330 Published : May 27, 2026, 5:16 p.m. | 1ย hour, 8ย minutes ago Description :free5GC is an open-source implementation of the 5G core network. Prior to 4.2.2, free5GC's NEF mounts the nnef-pfdmanagement route group without inbound OAuth2/bearer-token authorization. A network attacker who can reach NEF on the SBI can use a forged or arbitrary bearer token (e.g. Auth
free5GC: NEF nnef-pfdmanagement
Exploit
CVE-2026-44330
MITRE CVE High
Refer to CVE-2026-44330 NVD advisory