Known Vulnerabilities for Unifi by Ui
Listed below are 2 of the newest known vulnerabilities associated with "Unifi" by "Ui".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-22566 json | An Improper Access Control vulnerability could allow a malicious actor with access to the UniFi Play network to obtain UniFi ... | Not Provided | 2026-04-13 | 2026-04-14 |
| CVE-2026-22565 json | An Improper Input Validation vulnerability could allow a malicious actor with access to the UniFi Play network to cause the d... | Not Provided | 2026-04-13 | 2026-04-14 |
| CVE-2026-22564 json | An Improper Access Control vulnerability could allow a malicious actor with access to the UniFi Play network to enable SSH to... | Not Provided | 2026-04-13 | 2026-04-14 |
| CVE-2026-22563 json | A series of Improper Input Validation vulnerabilities could allow a Command Injection by a malicious actor with access to the... | Not Provided | 2026-04-13 | 2026-04-14 |
| CVE-2026-22562 json | A malicious actor with access to the UniFi Play network could exploit a Path Traversal vulnerability found in the device firm... | Not Provided | 2026-04-13 | 2026-04-14 |
| CVE-2023-28365 json | A backup file vulnerability found in UniFi applications (Version 7.3.83 and earlier) running on Linux operating systems allow... | 9.1 - CRITICAL | 2023-07-01 | 2023-07-10 |
| CVE-2019-25652 json | UniFi Network Controller before version 5.10.22 and 5.11.x before 5.11.18 contains an improper certificate verification vulne... | 9.1 - CRITICAL | 2026-03-27 | 2026-03-30 |
| CVE-2019-25651 json | Ubiquiti UniFi Network Controller prior to 5.10.12 (excluding 5.6.42), UAP FW prior to 4.0.6, UAP-AC, UAP-AC v2, and UAP-AC O... | 9.1 - CRITICAL | 2026-03-27 | 2026-03-30 |
| CVE-2013-3572 json | Cross-site scripting (XSS) vulnerability in the administer interface in the UniFi Controller in Ubiquiti Networks UniFi 2.3.5... | 4.3 - MEDIUM | 2013-12-31 | 2019-06-10 |