Skip to content
Vulnerability intelligence

CVE-2026-34908

CVE-2026-34908, 34909, 34910: access control bypass, path traversal, and command injection in UniFi OS. All CVSS 9.5. Active exploitation confirmed. CISA deadline: June 26.

2026