UniFi OS Server unauthenticated root RCE chain (multiple vulnerabilities)
Vulnerability
Updated: 08.06.2026 18:51
· First: 08.06.2026 18:51
· 📰 1 src / 1 articles
· H score: 25
UniFi OS Server is exposed to an unauthenticated root RCE chain that combines CVE-2026-34908, CVE-2026-34909, and CVE-2026-34910, putting versions 5.0.6 and earlier at risk. Researchers validated the chain on a live 5.0.6 instance and showed that it can reach root without credentials or user interaction. The flaws were fixed in May, and defenders can confirm exposure with a free detection script before upgrading to 5.0.8 or later.