Ubiquiti has disclosed 25 vulnerabilities across its UniFi ecosystem in Security Advisory Bulletin 066, affecting UniFi Connect, Talk, Access, Protect, Network Application, Protect Floodlight, and UniFi OS on UDM, UNVR, and UNAS devices. The most severe issue, CVE-2026-50746, carries a CVSS 10.0 rating and allows unauthenticated network-adjacent command injection in UniFi Connect, while several other flaws rated 9.9 can enable privilege escalation or full device compromise in UniFi Talk, UniFi Access, UniFi OS, and UniFi Protect. Ubiquiti also warned that CVE-2026-54403 in UniFi OS can be chained with other bugs to bypass low-privilege requirements, increasing the risk of broader compromise.
The disclosure aligns with broader Q2 2026 vulnerability trends showing attackers concentrating on internet-facing access points such as firewalls, VPNs, enterprise management panels, and authentication portals. AhnLab’s quarterly report highlighted UniFi OS among major enterprise-facing products affected during the quarter and noted that critical vulnerabilities and actively exploited flaws continued to rise, with 75 new entries added to CISA’s Known Exploited Vulnerabilities catalog. Ubiquiti has released patched versions for all affected products and said no interim workarounds are available, making immediate patching and tighter protection of exposed administrative interfaces the primary defenses.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
1 event from the most recent confirmed update back to the earliest known activity.
Ubiquiti disclosed 25 vulnerabilities across the UniFi ecosystem in Security Advisory Bulletin 066, including critical flaws affecting UniFi Connect, Talk, Access, Protect, Network Application, Protect Floodlight, and UniFi OS on UDM, UNVR, and UNAS devices. The company also provided patched versions for all affected products and said no interim workarounds are available.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
8 references tracked. Mallory keeps watching after this page renders.
runzero.com
Open sourcesecurityaffairs.com
Open sourcecyber.gc.ca
Open sourcethehackernews.com
Open sourcebleepingcomputer.com
Open sourcecybersecuritynews.com
Open sourceasec.ahnlab.com
Open sourcecommunity.ui.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.