www.cisa.gov 6/23/2026, 9:03:47 PM · external

CISA adds Ubiquiti UniFi OS flaw CVE-2026-34908 to KEV list

Developing story vulnerability 2 articles tracked
Ubiquiti UniFi OS improper access control flaw (CVE-2026-34908) exploited in the wild
CyberSIXT Evidence Panel Source marked as original reporting
CISA KEV Listed in KEV
Patch Patch Status Unknown

THE Known Exploited Vulnerabilities Catalog, maintained by CISA, serves as an authoritative source for tracking vulnerabilities exploited in the wild. It helps organizations prioritize vulnerability management. The catalog includes information about vulnerabilities such as CVE-2026-34908, which pertains to an unauthorized access control issue in Ubiquiti UniFi OS. Recommendations for mitigation include following vendor instructions and adhering to CISA's guidance on security updates. The catalog also offers resources in multiple formats (CSV, JSON) and mechanisms for nominating new vulnerabilities.

View full article

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline