CVE-2026-56841: UI UniFi Protect

High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.

A malicious actor with access to the network and low privileges could exploit an authenticated SQL Injection vulnerability found in UniFi Protect Application to escalate privileges on the host device.

Affected products

  • UI UniFi Protect: before 7.1.83 (fixed in 7.1.83)

Published 2026-07-02. Last modified 2026-07-06.