CVE-2026-92417
A vulnerability was found in Open5GS up to 2.8.0. This affects the function ogs_pfcp_parse_volume_measurement in the library lib/pfcp/types.
CVSS
6.5
Medium
EPSS
0.6%
p49
KEV
—
Exploit Today
15
0-100
Published: Sep 16, 2026 · Last modified: Sep 16, 2026 · CWE-404 · CWE-476
Not enough EPSS history yet.
A vulnerability was found in Open5GS up to 2.8.0. This affects the function ogs_pfcp_parse_volume_measurement in the library lib/pfcp/types.c of the component PFCP Handler. The manipulation results in null pointer dereference. The attack may be launched remotely. The patch is identified as 8f07b507b78ff94776f2cd49276eb116ed93d7f2. A patch should be applied to remediate this issue.
- github.comhttps://github.com/open5gs/open5gs/
- github.comhttps://github.com/open5gs/open5gs/commit/8f07b507b78ff94776f2cd49276eb116ed93d7f2
- github.comhttps://github.com/open5gs/open5gs/issues/4745
- vuldb.comhttps://vuldb.com/cve/CVE-2026-92417
- vuldb.comhttps://vuldb.com/submit/940465
- vuldb.comhttps://vuldb.com/vuln/405595
- vuldb.comhttps://vuldb.com/vuln/405595/cti
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-924134.3 MED37.0%
——11A flaw has been found in Artifex MuPDF up to b6d17493700c621c0e70036980a6ebd06d2202c9. Affected by this vulnerability is the function pdf_open_filter of the file pdf-stream.c of the component PDF Xref Loading. Executing a manipulation can lead to null pointer dereference. The attack can be launched remotely. The exploit has been published and may be used. This patch is called 3df1e30f9d7b77260e13bd0dbe1928ddeba8386e. Applying a patch is advised to resolve this issue.1dCVE-2026-926267.5 HIG30.1%
——9Control iD iDSecure versions prior to 4.8.3.0 are affected by an unauthenticated Denial of Service.
The /api/dguardintegration/dguardVersion endpoint dereferences DGuard integration login state that may be unset, raising an unhandled null reference exception. The exception is thrown from an asynchronous method that returns void, so it is not observed by a caller and can terminate the iDSecure process.1dCVE-2026-923654.3 MED32.4%
——10A vulnerability was found in vllm-project vllm up to 0.29.0. Affected by this issue is some unknown functionality of the file vllm/v1/sample/thinking_budget_state.py. The manipulation results in inefficient algorithmic complexity. It is possible to launch the attack remotely. The pull request to fix this issue awaits acceptance.1dCVE-2026-923634.3 MED43.1%
——13A flaw has been found in ag-ui-protocol ag-ui 1.0. Affected is an unknown function of the file src/stream/sse_parser.cpp of the component JSON Parser. Executing a manipulation can lead to resource consumption. The attack may be performed from remote. This patch is called ab6e0bc298996caac2b4b0b3ec0bd8d32a15a186. Applying a patch is advised to resolve this issue.1dCVE-2026-923627.3 HIG42.0%
——13A vulnerability was detected in ag-ui-protocol ag-ui 1.0. This impacts an unknown function of the file crates/ag-ui-client/src/sse.rs of the component SSE Frame Parser. Performing a manipulation results in resource consumption. The attack is possible to be carried out remotely. The pull request to fix this issue awaits acceptance.1dCVE-2026-776927.5 HIG40.4%
——12An attacker can cause `named` to abort by sending a crafted DNS-over-HTTPS request with a cryptographically invalid SIG(0) record, and then closing the transport connection prematurely.
This issue affects BIND 9 versions 9.20.0 through 9.20.27, 9.21.0 through 9.21.25, and 9.20.9-S1 through 9.20.27-S1.1d