DMZ//THREAT INTEL
FEED ACTIVELAST SYNC: 05:09:16ZSOURCES: 14CRITICAL: 39
⚠ ACTIVE ALERTS
@MsftSecIntel CRITICAL — Microsoft Defender Experts tracked increased ACR Stealer activity from late April through… /// @TalosSecurity CRITICAL — Qilin RaaS remains the most active ransomware operation globally in 2026 with 500+… /// @CrowdStrike CRITICAL — VECT ransomware + TeamPCP supply chain credential theft + BreachForums mass affiliate… /// @MandiantThreats CRITICAL — Tracking Qilin affiliate recruitment activity on Russian-language cybercrime forums… /// @FalconFeedsio CRITICAL — Dark web monitoring alert: FIFA World Cup 2026 credential ecosystem fully operational on…
39Critical Threats
18Active CVEs
8IOCs Tracked
11New Advisories
TLP:WHITEVULNERABILITY BRIEF // CVE-2026-34908PUBLISHED: 2026-05-22
■ CRITICALCVE-2026-34908★ CISA KEV LISTED

Ubiquiti UniFi OS NGINX Auth Bypass + Command Injection Chain (CVSS 10.0 Trio)

VENDOR: Ubiquiti//PRODUCT: UniFi OS (all UniFi gateway, NVR, Access Hub, and Cloud Key devices)
10
CRITICAL
CVSS 3.1
✓
PATCH STATUS
PATCH AVAILABLE
⚡
EXPLOIT STATUS
PUBLIC EXPLOIT

Three CVSS 10.0 vulnerabilities (CVE-2026-34908 improper access control, CVE-2026-34909 path traversal, CVE-2026-34910 command injection) chain into a fully unauthenticated root takeover of any UniFi OS device. Bishop Fox confirmed the NGINX authentication gateway bypass and demonstrated command injection against a live 5.0.6 target; Censys tracks nearly 100,000 internet-exposed UniFi OS endpoints. Wild exploitation was confirmed — attackers created rogue 'John Sim' administrator accounts during automated reconnaissance — and CISA added all three to KEV on June 23, 2026.

↗
Attack Vector
NETWORK
△
Attack Complexity
LOW
⚷
Privs Required
NONE
◈
User Interaction
NONE
⊕
Scope / Impact
CHANGED
C:H · I:H · A:H
AFFECTED VERSIONSUniFi OS Server <= 5.0.6; firmware < 5.1.12 (UDM/UDR/UNVR series); UniFi Express < 4.0.14; UNAS < 5.1.10
  • → https://community.ui.com/releases/Security-Advisory-Bulletin-064-064/84811c09-4cf4-42ab-bd61-cc994445963b
  • → https://www.securityweek.com/critical-ubiquiti-vulnerabilities-in-attackers-crosshairs/
  • → https://www.cisa.gov/news-events/alerts/2026/06/23/cisa-adds-four-known-exploited-vulnerabilities-catalog
  • → https://threataft.com/articles/ubiquiti-unifi-os-cve-2026-34908-34909-34910-rce
SHARE BRIEF:✕ Post on Xin Share on LinkedIn