Improper Access Control Vulnerability in UniFi Protect AI Key by Ubiquiti
CVE-2026-77557

9.8CRITICAL

Key Information:

Vendor
CVE Published:
26 August 2026

What is CVE-2026-77557?

A malicious actor could exploit an Improper Access Control vulnerability present in the UniFi Protect AI Key, enabling them to escalate privileges on the device. This type of security flaw allows unauthorized users to gain elevated access, potentially compromising sensitive information or leading to unauthorized control over device functionalities. Users are encouraged to apply best practices in network security and monitor any potential unauthorized access.

Affected Version(s)

UniFi Protect AI Key 0 < 2.2.6

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.