Ui's vulnerability footprint centers on a family of edge routers and routing appliances, particularly its ER-X product line, which serve as network boundary devices in enterprise and service-provider environments. Vulnerabilities affecting the vendor skew toward serious outcomes, with an elevated share reaching critical severity, and a moderate tendency toward public exploit availability, consistent with the high-value targeting of edge infrastructure. The exposure recurs through command-injection and OS-command-injection flaws, improper access control, and authentication weaknesses that are characteristic of network appliances accepting untrusted configuration and administrative input. Defenders should prioritize patches for internet-exposed instances of these edge routers and audit administrative access controls; live exploitation and severity counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ui over time
Signals from CVEs in this vendor scope (119 CVEs).
119 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-34910CRITICAL A malicious actor with access to the network could exploit an Improper Input Validation vulnerability found in UniFi OS devices to execute a Command Injection. | May 22, 2026 | 10.0 | 98 | YES | YES |
CVE-2010-5330CRITICAL On certain Ubiquiti devices, Command Injection exists via a GET request to stainfo.cgi (aka Show AP info) because the ifname variable is not sanitized, as demonstrated by shell met | Jun 11, 2019 | 9.8 | 84 | YES | NO |
CVE-2026-34909CRITICAL A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi OS devices to access files on the underlying system that could be manipulat | May 22, 2026 | 10.0 | 82 | YES | NO |
CVE-2026-34908CRITICAL A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi OS devices to make unauthorized changes to the system. | May 22, 2026 | 10.0 | 82 | YES | NO |
CVE-2015-9266CRITICAL The web management interface of Ubiquiti airMAX, airFiber, airGateway and EdgeSwitch XP (formerly TOUGHSwitch) allows an unauthenticated attacker to upload and write arbitrary file | Sep 5, 2018 | 9.8 | 81 | NO | YES |
CVE-2025-52665CRITICAL A malicious actor with access to the management network could exploit a misconfiguration in UniFi’s door access application, UniFi Access, that exposed a management API without pro | Oct 31, 2025 | 10.0 | 71 | NO | YES |
CVE-2026-50746CRITICAL A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi Connect Application to execute a Command Injection on the host de | Jul 2, 2026 | 10.0 | 49 | NO | NO |
CVE-2026-55115CRITICAL A malicious actor with access to the network and low privileges could exploit a Server-Side Request Forgery (SSRF) in UniFi Protect Application to escalate privileges on the host d | Jul 2, 2026 | 9.9 | 43 | NO | NO |
CVE-2026-50747CRITICAL A malicious actor with access to the network and low privileges could exploit a series of authenticated SQL Injection vulnerabilities found in UniFi Talk Application to escalate pr | Jul 2, 2026 | 9.9 | 43 | NO | NO |
CVE-2026-50748CRITICAL A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability found in UniFi Access Application to execute a Command Inje | Jul 2, 2026 | 9.9 | 43 | NO | NO |
Signals from CVEs in this vendor scope (119 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ui.
Media articles that mention a CVE ID that affects a product developed by Ui — matched by CVE ID, not by vendor name.