CVE-2026-54404
Ubiquiti Inc UniFi OS Server, Dream Machines, Enterprise Fortress Gateway
A malicious actor with access to the network and low privileges could exploit a series of authenticated SQL Injection vulnerabilities found in UniFi OS to escalate privileges within such UniFi OS devices or instances.
- CVSS
- 8.8
- EPSS
- 0.28% 20.2% percentile
- CISA KEV
- Not listed
- Published
- 2026.07.03