[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fCiYdVjSuSuGwBAUvdcHZQptO7IB8V7QUeESVJoXh6rY":3},{"article":4,"iocs":42},{"id":5,"title":6,"slug":7,"summary":8,"ai_summary":9,"brief":10,"full_text":11,"url":12,"image_url":13,"published_at":14,"ingested_at":15,"relevance_score":16,"entities":17,"category_id":24,"category":25,"article_tags":29},"a4990199-2bf0-4907-8fe5-3621a9b98be4","Three 10.0 security flaws fixed across Ubiquiti’s UniFi line","three-10-0-security-flaws-fixed-across-ubiquiti-s-unifi-line-76131a","The communications product company disclosed 22 total Wednesday, all but one of which was rated “critical” at 9.0 or higher. The post Three 10.0 security flaws fixed across Ubiquiti’s UniFi line appeared first on CyberScoop.","Ubiquiti has addressed 22 vulnerabilities affecting its UniFi product line, with three receiving the maximum CVSS score of 10.0. These critical flaws, along with 18 other high-severity issues, could allow attackers to gain elevated privileges, bypass authentication, or execute arbitrary commands. The company has provided mitigations for these vulnerabilities, though it's unclear if any have been exploited in the wild.","Ubiquiti patches 21 critical vulnerabilities, including three rated 10.0 CVSS.","Ubiquiti has patched 21 critical vulnerabilities, three of which were rated the highest severity possible, the communications product company said Wednesday in a security bulletin. In all, the company patched 22 vulnerabilities, with the last one rated “high,” it said in the bulletin. Three of the vulnerabilities had a Common Vulnerability Scoring System rating of 10 out of 10. Each of them would allow a hacker to access privileges on the device or application. All but one of the 22 vulnerabilities affect the UniFi line of products. The three maximum-security vulnerabilities are CVE-2026-77537, CVE-2026-77550 and CVE-2026-77554. In all three, hackers could exploit an improper access control vulnerability, the same kind in seven of the total vulnerabilities Ubiquiti disclosed Wednesday. Other vulnerabilities would allow hackers to do things like bypass authentication or run arbitrary commands. Ubiquiti, which claimed revenues of $2.57 billion last year, released the bulletin without commentary, besides identifying the vulnerabilities and recommended mitigations. The company did not immediately respond to a request for comment about whether it had seen any of the exploits used in the wild before they were patched. The trio of maximum-security vulnerabilities patched equals the total the company had disclosed this year before Wednesday. In March, the company disclosed that it had patched a single maximum-security vulnerability. It disclosed one more in both May and July of this year. Two months ago, the Cybersecurity and Infrastructure Security Agency added three Ubiquiti vulnerabilities to its list of flaws that were known to have been exploited, sometimes called the agency’s “must-patch” list. Share Facebook LinkedIn Twitter Copy Link","https:\u002F\u002Fcyberscoop.com\u002Fubiquiti-unifi-critical-vulnerabilities-patched\u002F","https:\u002F\u002Fcyberscoop.com\u002Fwp-content\u002Fuploads\u002Fsites\u002F3\u002F2026\u002F08\u002FGettyImages-2265761815.jpg","2026-08-26T18:47:46+00:00","2026-08-26T20:00:10.547821+00:00",8,[18,21],{"name":19,"type":20},"Ubiquiti","vendor",{"name":22,"type":23},"UniFi","product","80544778-fabb-4dcd-aa35-17492e5dcf4f",{"id":24,"icon":26,"name":27,"slug":28},null,"Vulnerabilities","vulnerabilities",[30,32,37],{"category":31},{"id":24,"icon":26,"name":27,"slug":28},{"category":33},{"id":34,"icon":26,"name":35,"slug":36},"d6f63bb8-0801-486a-be7f-171400700454","IoT\u002FOT","iot-ot",{"category":38},{"id":39,"icon":26,"name":40,"slug":41},"e7b231c8-5f79-4465-8d38-1ef13aea5a14","Threat Intelligence","threat-intelligence",[43,47,49],{"type":44,"value":45,"context":46},"cve","CVE-2026-77537","Maximum severity vulnerability in Ubiquiti UniFi products.",{"type":44,"value":48,"context":46},"CVE-2026-77550",{"type":44,"value":50,"context":46},"CVE-2026-77554"]