Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Ui

242 known vulnerabilities

11
CRITICAL
23
HIGH
2
MEDIUM

Top Products

unifi dream router firmware 10 unifi dream router 10 unifi dream wall firmware 10 unifi dream wall 10 unifi dream router 7 firmware 10 unifi dream router 7 10 unifi dream machine pro firmware 9 unifi dream machine pro 9 unifi dream machine special edition firmware 9 unifi dream machine special edition 9
36 CVEs
7.5
CVE-2026-56842

A malicious actor with access to the network and under certain conditions could exploit an Incorrect Authorization vulne

8.8
CVE-2026-56841

A malicious actor with access to the network and low privileges could exploit an authenticated SQL Injection vulnerabili

8.1
CVE-2026-55119

A malicious actor with access to the network and low privileges could exploit an Improper Access Control vulnerability f

8.3
CVE-2026-55118

A malicious actor with access to the network,low privileges and under certain conditions could exploit an Improper Acces

8.6
CVE-2026-55117

A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi Access Applicat

9.0
CVE-2026-55116

A malicious actor with access to the network and under certain network configurations could exploit an Improper Access C

9.9
CVE-2026-55115

A malicious actor with access to the network and low privileges could exploit a Server-Side Request Forgery (SSRF) in Un

8.8
CVE-2026-55114

A malicious actor with access to the network and low privileges could exploit an Improper Access Control vulnerability f

7.5
CVE-2026-55113

A malicious actor with access to the network could exploit a Server-Side Request Forgery (SSRF) vulnerability found in U

7.5
CVE-2026-55112

A malicious actor with access to the network and low privileges and under certain conditions could exploit an Improper A

7.5
CVE-2026-55111

A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi Protect Floodli

7.5
CVE-2026-55110

A malicious actor who lures an authenticated user to a malicious page could exploit a Cross-Origin Resource Sharing (COR

7.5
CVE-2026-54409

A malicious actor with access to the network and under certain conditions could exploit an Improper Initialization vulne

8.6
CVE-2026-54408

A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi Prote

8.6
CVE-2026-54407

A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi Prote

8.7
CVE-2026-54406

A malicious actor with access to the network and high privileges could exploit a Path Traversal vulnerability found in s

7.5
CVE-2026-54405

A malicious actor with access to the network could exploit an Improper Input Validation vulnerability found in UniFi Net

8.8
CVE-2026-54404

A malicious actor with access to the network and low privileges could exploit a series of authenticated SQL Injection vu

8.6
CVE-2026-54403

A malicious actor with access to the network could exploit a Path Traversal vulnerability found in certain devices runni

9.9
CVE-2026-54402

A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability

7.7
CVE-2026-54401

A malicious actor with access to the network and low privileges could exploit a Server-Side Request Forgery (SSRF) to es

9.1
CVE-2026-54400

A malicious actor with access to the network and high privileges could exploit an Improper Access Control vulnerability

9.9
CVE-2026-50748

A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability

9.9
CVE-2026-50747

A malicious actor with access to the network and low privileges could exploit a series of authenticated SQL Injection vu

10.0
CVE-2026-50746

A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi Conne

7.7
CVE-2026-34911

A malicious actor with access to the network and low privileges could exploit a Path Traversal vulnerability found in Un

10.0
CVE-2026-34910 KEV

A malicious actor with access to the network could exploit an Improper Input Validation vulnerability found in UniFi OS

10.0
CVE-2026-34909 KEV

A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi OS devices to a

10.0
CVE-2026-34908 KEV

A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi OS de

9.1
CVE-2026-33000

A malicious actor with access to the network and high privileges could exploit an Improper Input Validation vulnerabilit

8.8
CVE-2026-21639

A malicious actor in Wi-Fi range of the affected product could leverage a vulnerability in the airMAX Wireless Protocol

8.8
CVE-2026-21638

A malicious actor in Wi-Fi range of the affected product could leverage a vulnerability in the airMAX Wireless Protocol

5.3
CVE-2026-21635

An Improper Access Control could allow a malicious actor in Wi-Fi range to the EV Station Lite (v1.5.2 and earlier) to u

6.5
CVE-2026-21634

A malicious actor with access to the adjacent network could overflow the UniFi Protect Application (Version 6.1.79 and e

8.8
CVE-2026-21633

A malicious actor with access to the adjacent network could obtain unauthorized access to a UniFi Protect Camera by expl

7.5
CVE-2025-59467

A Cross-Site Scripting (XSS) vulnerability in the UCRM Argentina AFIP invoices Plugin (v1.2.0 and earlier) could allow p

Frequently Asked Questions

How many CVEs affect Ui?

Ui has 242 CVE records in our database, including 87 critical and 152 high severity vulnerabilities. 3 of these are listed in CISA's Known Exploited Vulnerabilities catalog.

What are the most severe Ui vulnerabilities?

Ui has 87 critical severity (CVSS 9.0+) and 152 high severity (CVSS 7.0-8.9) vulnerabilities. 3 vulnerabilities are confirmed as actively exploited in the wild.

How can I scan for Ui vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Ui products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Ui Vulnerabilities

CyberStrike scans your infrastructure for Ui vulnerabilities and provides real-time remediation guidance.

Get Started