Launch Week Day 1: Announcing Security Design Review
MEDIUM 6.5 Go

Free5GC is vulnerable to DoS through its Npcf_BDTPolicyControl POST API

GHSA-vgq7-9r5r-j9v3 · CVE-2025-60632 · GO-2025-4164

Published · Modified

Description

An issue was discovered in Free5GC v4.0.0 and v4.0.1 allowing an attacker to cause a denial of service via crafted POST request to the Npcf_BDTPolicyControl API.

Ready to move

Start Securing

Free, no credit card | First findings in minutes