Vulnerabilities · 68 days ago
Partial UniFi Patching Leaves the Stack Exposed UniFi appliances do not become safe just because the host OS is updated. Ubiquiti split fixes across UniFi OS and the bundled apps, so leaving any one layer behind can still leave a command injection or privilege-escalation path on the same device.
The new advisory covers 25 UniFi flaws across UniFi OS, Connect, Talk, Access, and Protect. That includes seven critical bugs in UniFi OS and six CVEs CISA already marked as overdue KEV items, with fixes landing in UniFi Connect 3.4.20 , UniFi Talk 5.2.2 , UniFi Access 4.2.29 , UniFi Protect 7.1.83 , and UniFi OS 5.1.19 .
The practical risk is a shared appliance stack where one exposed app can still hand an attacker control even after another layer is patched. For teams running UniFi management gear, the target is the whole stack, not a single product name.
CVEs in this update
10 CVEs
10 critical · 0 high · 0 medium · 0 low
3 in CISA KEV · 3 with EPSS above 1%
Highest severity: CVE-2026-34908 · 10.0 CRITICAL
Highest EPSS: CVE-2026-54402 · 1.8%
Timeline Sources 5 sources covering this story
FortiGuard Labs Threat Signals Jul 8
Threat Signal Report | FortiGuard Labs
What is the Vulnerability?Multiple critical vulnerabilities affecting Ubiquiti UniFi OS can be chained together to achieve unauthenticated remote c...
The Hacker News Jul 8
Ubiquiti Patches Critical UniFi Flaws Across Connect, Talk, Access, Protect, and OS
Ubiquiti fixes seven critical UniFi flaws across Connect, Talk, Access, Protect, and OS, with no evidence of exploitation in the wild found.
CSIRT Italia / ACN Jul 8
Risolte vulnerabilità nei prodotti Ubiquiti
Rilasciati aggiornamenti di sicurezza per risolvere 25 vulnerabilità, di cui 7 con gravità “critica” e 18 con gravità “alta”, in prodotti Ubiquiti.
BleepingComputer Jul 8
Ubiquiti warns of new max severity UniFi OS vulnerability
Ubiquiti has released security updates to patch seven critical vulnerabilities in UniFi OS, including a maximum-severity flaw that can be exploited in command injection attacks.
NCSC-NL Advisories Jul 7
Kwetsbaarheden verholpen in UniFi-producten van Ubiquiti Networks
Ubiquiti Networks heeft kwetsbaarheden verholpen in verschillende UniFi-producten, waaronder UniFi Connect Application, UniFi Talk Application, UniFi Access Application, UniFi OS, UniFi Network Application en UniFi Protect Application.
Entities CVE-2026-34908 CVE-2026-34909 CVE-2026-34910 CVE-2026-50746 Part of the PlainSec briefing for 2026-07-09
Editions Related stories
Vulnerabilities · 68 days ago
Partial UniFi Patching Leaves the Stack Exposed UniFi appliances do not become safe just because the host OS is updated. Ubiquiti split fixes across UniFi OS and the bundled apps, so leaving any one layer behind can still leave a command injection or privilege-escalation path on the same device.
The new advisory covers 25 UniFi flaws across UniFi OS, Connect, Talk, Access, and Protect. That includes seven critical bugs in UniFi OS and six CVEs CISA already marked as overdue KEV items, with fixes landing in UniFi Connect 3.4.20 , UniFi Talk 5.2.2 , UniFi Access 4.2.29 , UniFi Protect 7.1.83 , and UniFi OS 5.1.19 .
The practical risk is a shared appliance stack where one exposed app can still hand an attacker control even after another layer is patched. For teams running UniFi management gear, the target is the whole stack, not a single product name.
CVEs in this update
10 CVEs
10 critical · 0 high · 0 medium · 0 low
3 in CISA KEV · 3 with EPSS above 1%
Highest severity: CVE-2026-34908 · 10.0 CRITICAL
Highest EPSS: CVE-2026-54402 · 1.8%
Timeline Sources 5 sources covering this story
FortiGuard Labs Threat Signals Jul 8
Threat Signal Report | FortiGuard Labs
What is the Vulnerability?Multiple critical vulnerabilities affecting Ubiquiti UniFi OS can be chained together to achieve unauthenticated remote c...
The Hacker News Jul 8
Ubiquiti Patches Critical UniFi Flaws Across Connect, Talk, Access, Protect, and OS
Ubiquiti fixes seven critical UniFi flaws across Connect, Talk, Access, Protect, and OS, with no evidence of exploitation in the wild found.
CSIRT Italia / ACN Jul 8
Risolte vulnerabilità nei prodotti Ubiquiti
Rilasciati aggiornamenti di sicurezza per risolvere 25 vulnerabilità, di cui 7 con gravità “critica” e 18 con gravità “alta”, in prodotti Ubiquiti.
BleepingComputer Jul 8
Ubiquiti warns of new max severity UniFi OS vulnerability
Ubiquiti has released security updates to patch seven critical vulnerabilities in UniFi OS, including a maximum-severity flaw that can be exploited in command injection attacks.
NCSC-NL Advisories Jul 7
Kwetsbaarheden verholpen in UniFi-producten van Ubiquiti Networks
Ubiquiti Networks heeft kwetsbaarheden verholpen in verschillende UniFi-producten, waaronder UniFi Connect Application, UniFi Talk Application, UniFi Access Application, UniFi OS, UniFi Network Application en UniFi Protect Application.
Entities CVE-2026-34908 CVE-2026-34909 CVE-2026-34910 CVE-2026-50746 Part of the PlainSec briefing for 2026-07-09
Editions Related stories