CVE Tools

Ubiquiti patches three max severity security vulnerabilities

BleepingComputerBy Sergiu Gatlan

PatchUniFi ProtectUniFi OS

Our summary

Ubiquiti has issued security updates for its UniFi Protect, UniFi OS, and UniFi Talk products to remediate three newly disclosed maximum-severity vulnerabilities. These flaws, tracked as CVE-2026-77537, CVE-2026-77550, and CVE-2026-77554, allow remote attackers to execute unauthorized actions without requiring prior authentication or user interaction. Administrators should upgrade to UniFi Protect Application version 7.2.105 or later, UniFi Talk Application version 5.3.2 or later, or UniFi OS Server version 5.1.21 or earlier to mitigate these risks.

Read at BleepingComputer

BleepingComputer publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store