CVE-2026-34910: Ubiquiti UniFi OS Improper Input Validation Vulnerability
A malicious actor with access to the network could exploit an Improper Input Validation vulnerability found in UniFi OS devices to execute a Command Injection.
Other sources
Ubiquiti UniFi OS contains an improper input validation vulnerability which could allow a malicious actor with access to the network to conduct command injection.
— CISA
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-34910?
The severity of CVE-2026-34910 is rated as critical with a CVSS score of 10.
How does CVE-2026-34910 affect UniFi OS devices?
CVE-2026-34910 affects UniFi OS devices by allowing command injection due to improper input validation.
Who is at risk due to CVE-2026-34910?
Malicious actors with network access are at risk of exploiting CVE-2026-34910.
How can I mitigate CVE-2026-34910?
To mitigate CVE-2026-34910, ensure that your UniFi OS devices are updated to the latest security patches.
What type of vulnerabilities does CVE-2026-34910 involve?
CVE-2026-34910 involves input validation and command injection vulnerabilities.