logo

Ubiquiti Patches Critical UniFi OS Vulnerabilities Allowing Remote Privilege Escalation

ID: 94250d3e-490e-5337-8c52-d689890badb0

STIX ID: report--94250d3e-490e-5337-8c52-d689890badb0

Feed Name: cybersecurityNews.com

Threat Score
90/100

Date Published: 2026-05-22

Date Updated: 2026-05-23

Author: Guru Baran

...
...

Ubiquiti released urgent patches for five severe UniFi OS vulnerabilities—three rated CVSS 10.0—including unauthenticated remote code execution, path traversal, and command injection affecting UCG, UDM, UNVR, UniFi OS Server, and other appliances. Administrators are instructed to apply specific firmware versions (e.g., 5.1.12, 5.0.8) immediately and to restrict internet exposure of management interfaces to prevent full device and network compromise.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.