Home › Intelligence › Brief
VULNERABILITY BRIEF🔴 Critical Vulnerability

Ubiquiti Patches Three Critical Remote‑Exploitation Vulnerabilities (CVE‑2026‑77537, CVE‑2026‑77550, CVE‑2026‑77554)

Ubiquiti released patches for three critical CVEs that enable unauthenticated remote code execution, authentication bypass, and command injection across its UniFi Protect, OS, and Talk platforms. The fixes underscore the importance of continuous patch‑management evidence for SOC 2 audit readiness.

LiveThreat™ Intelligence · 📅 August 27, 2026· 📰 bleepingcomputer.com
🔴
Severity
Critical
VU
Type
Vulnerability
🎯
Confidence
High
🏢
Affected
1 sector(s)
✅
Actions
2 recommended
📰
Source
bleepingcomputer.com

Ubiquiti Patches Three Critical Remote‑Exploitation Vulnerabilities (CVE‑2026‑77537, CVE‑2026‑77550, CVE‑2026‑77554)

What Happened — Ubiquiti released patches for three maximum‑severity flaws that allow unauthenticated attackers to compromise UniFi Protect, bypass authentication on UniFi OS, and execute commands on UniFi Talk. All three vulnerabilities are exploitable remotely with low complexity and no user interaction required.

Why It Matters for Compliance & Audit Readiness

- These flaws illustrate the need for continuous control mapping and evidence collection around patch management—core SOC 2 requirements for Change Management (CC6.1) and System Operations (CC7.1).

- Demonstrating timely remediation provides audit‑ready proof that your organization enforces a defensible, repeatable patch‑cycle.

- Verisq’s Control Mapping capability can automatically correlate vendor patches to SOC 2 controls and generate continuous evidence for auditors.

Who Is Affected — Enterprises that deploy Ubiquiti networking, surveillance, or VoIP equipment across any industry (e.g., retail, education, healthcare, government).

Recommended Actions

  • Inventory all UniFi Protect, UniFi OS, and UniFi Talk instances.
  • Verify firmware versions against the patched releases (Protect 7.2.105+, Talk 5.3.2+, OS 5.1.21+).
  • Map the patch‑install process to SOC 2 CC6.1 (Change Management) and CC7.1 (System Operations) controls; capture patch logs as audit evidence.
  • Integrate automated scanning (e.g., Censys, internal asset discovery) to flag any unpatched devices in real‑time.

Source: BleepingComputer

Technical Notes

- CVE‑2026‑77537: Improper input validation in UniFi Protect → remote code execution.

- CVE‑2026‑77550: CRLF injection in UniFi OS → authentication bypass.

- CVE‑2026‑77554: Command injection in UniFi Talk → remote command execution.

All three are rated CVSS 9.8 (Critical) and require no user interaction.

Source: BleepingComputer

📰 Original Source
https://www.bleepingcomputer.com/news/security/ubiquiti-patches-three-max-severity-security-vulnerabilities/ ↗

This LiveThreat Intelligence Brief is an independent analysis. Read the original reporting at the link above.

From the Verisq platform · Trust Operations

Every gap like this maps to a control you can evidence.

The Verisq AI Trust Operations platform maps incidents to your control framework and collects the evidence continuously — so your Trust Center shows proof, not promises, when a buyer or auditor asks.

Explore the Verisq AI Trust Operations platform →