CVE-2025-27216: Ubiquiti Inc Uisp Application

High severity, CVSS 8.8. EPSS: 0.3% chance of exploitation in the next 30 days.

Multiple Incorrect Permission Assignment for Critical Resource in UISP Application may allow a malicious actor with certain permissions to escalate privileges.

Affected products

  • Ubiquiti Inc Uisp Application: before 2.4.220 (fixed in 2.4.220)

Published 2025-08-21. Last modified 2026-06-17.