Command Injection Vulnerability in UniFi OS Server by Ubiquiti
CVE-2026-77539
9.1CRITICAL
What is CVE-2026-77539?
A vulnerability exists in UniFi OS Server that allows unauthorized command execution due to improper input validation. A malicious actor with network access and high privileges could exploit this vulnerability to inject arbitrary commands, potentially compromising the host device's integrity. It is crucial for administrators to implement appropriate security measures to mitigate the risk associated with this issue.
Affected Version(s)
UniFi OS Server 0 < 5.1.37
