All CVEs
Vulnerability intelligence

CVE-2026-34908

CWE-284

A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi OS devices to make unauthorized changes to the system.

CVSS Score
10
Critical
EPSS — Exploit Probability
58%
Riskier than 99% of all CVEs
Exploitation
Confirmed in the wild
KEV since 2026-06-23
Remediation
unknown
Federal deadline 2026-06-26
NVD entry PoC / advisory CISA KEV

9 articles across 5 outlets · first covered Jun 23, 2026 · latest Jun 24, 2026

Tracked incidents

Coverage timeline