UI
UI Unifi Express Firmware: vulnerabilities and CVEs
UI Unifi Express Firmware has 1 published vulnerabilities, 1 of them in the last 12 months. 1 are rated critical and 1 are listed by CISA as actively exploited.
CVEs1
Last 12 months1
Critical1
Actively exploited1
All vulnerabilities in the catalogue →⭐ Follow this technology
🔴 Actively exploited (CISA KEV)
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-34909 | Critical (10) | 1.8% | ⚠ Active exploitation | May 22, 2026 | A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi OS devices to access files on the underlying system that could be manipulated to access an underlying account. |
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-34909 | Critical (10) | 1.8% | ⚠ Active exploitation | May 22, 2026 | A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi OS devices to access files on the underlying system that could be manipulated to access an underlying account. |
🎯 How it gets exploited (ATT&CK techniques)
Number of CVEs of this technology mapped to each exploitation or primary-impact technique.
Other products by UI
Unifi Protect · 21Unifi Network Application · 15Unifi OS · 12Unifi Dream Machine PRO Firmware · 11Unifi OS Server · 11Unifi Cloud Gateway MAX Firmware · 10Unifi Cloud Gateway Industrial Firmware · 10Unifi Dream Router 7 Firmware · 10Enterprise Network Video Recorder Firmware · 10Unifi Dream Machine PRO MAX Firmware · 10Enterprise Network Video Recorder Core Firmware · 10Unifi Cloudkey Firmware · 10