Executive brief
free5GC UDM vulnerable to null byte injection in URL path parameters causing 500 Internal Server Error in github.com/free5gc/udm
Affected products
- Go github.com/free5gc/udm
Junglewise Threat Intelligence
CVE-2026-33191 · Severity: medium · CVSS 4 · Published 2026-03-23
Technologies: github.com/free5gc/udm (Go). Vendors: Go.
free5GC UDM vulnerable to null byte injection in URL path parameters causing 500 Internal Server Error in github.com/free5gc/udm