Multiple critical vulnerabilities could enable command injection, authentication bypass, or privilege escalation across UniFi products
Multiple critical vulnerabilities could enable command injection, authentication bypass, or privilege escalation across UniFi products
The following platforms are known to be affected:
A wide range of UniFi devices are impacted, including:
Note: Affected products are listed for individual vulnerabilities; there are 22 sets of affected products throughout Ubiquiti Security Advisory Bulletin 067.
Ubiquiti has released a security advisory to address multiple critical vulnerabilities in UniFi products. Successful exploitation could allow command injection, authentication bypass, privilege escalation , or compromise of affected devices and management platforms.
Of the 22 vulnerabilities listed in the advisory, 21 have CVSS v3.1 scores that are 9.0 or higher (considered critical). All vulnerabilities are exploitable via network access, with some requiring no authentication or user interaction. Some of these vulnerabilities have been highlighted below.
CVE-2026-77537 - Improper Input Validation (Command Injection) - CVSSv3.1: 10.0.
CVE-2026-77550 - Improper Neutralisation of CRLF Sequences - CVSSv3.1: 10.0.
CVE-2026-77554 - Improper Input Validation (Command Injection) - CVSSv3.1: 10.0.
CVE-2026-77549 - Improper Neutralisation of CRLF Sequences - CVSSv3.1: 9.0.
CVE-2026-77538 - Improper Access Control - CVSSv3.1: 8.2.
17 other vulnerabilities are covered in the advisory.
Affected organisations are encouraged to review the Ubiquiti Security Advisory Bulletin 067 and apply relevant updates as soon as possible.
A malicious actor with access to the network could exploit an Improper Input Validation vulnerability found in UniFi Protect Application to execute a Command Injection on the host device.
A malicious actor with access to the network could exploit an Improper Neutralization of CRLF Sequences vulnerability found in certain devices running UniFi OS to bypass authentication to such UniFi OS devices or instances.
A malicious actor with access to the network could exploit an Improper Input Validation vulnerability found in UniFi Talk Application to execute a Command Injection on the host device.
A malicious actor with access to the network and under certain conditions could exploit an Improper Neutralization of CRLF Sequences vulnerability found in certain devices running UniFi OS to bypass authentication to such UniFi OS devices or instances.
A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi Connect Application to escalate privileges within the UniFi Connect Application.
Last edited: 27 August 2026 3:42 pm
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
