ZeroHour

CVE-2026-77549

CVSS 3.1
9.0 critical
EPSS
<1%p23
Published
()
Modified
Description

A malicious actor with access to the network and under certain conditions could exploit an Improper Neutralization of CRLF Sequences vulnerability found in certain devices running UniFi OS to bypass authentication to such UniFi OS devices or instances.

Weakness
CWE-93
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.