CVE-2026-77535: Ubiquiti Inc UniFi Network Application

Critical severity, CVSS 9.1. EPSS: 1.3% chance of exploitation in the next 30 days.

A malicious actor with access to the network and high privileges could exploit an Improper Input Validation vulnerability found in UniFi Network Application to execute a Command Injection on an adopted device.

Affected products

  • Ubiquiti Inc UniFi Network Application: before 10.5.67 (fixed in 10.5.67)

Published 2026-08-26. Last modified 2026-08-28.