CVE-2026-55111: UI Protect Floodlight Firmware

High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.

A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi Protect Floodlight devices to access files on the UniFi Protect Floodlight.

Affected products

  • UI Protect Floodlight Firmware: before 1.13.6 (fixed in 1.13.6)

Published 2026-07-02. Last modified 2026-07-09.