CVE-2026-55115: UI UniFi Protect
Critical severity, CVSS 9.9. EPSS: 0.5% chance of exploitation in the next 30 days.
A malicious actor with access to the network and low privileges could exploit a Server-Side Request Forgery (SSRF) in UniFi Protect Application to escalate privileges on the host device.
Affected products
- UI UniFi Protect: before 7.1.83 (fixed in 7.1.83)
Published 2026-07-02. Last modified 2026-07-07.