A maximum-severity path traversal in the Ubiquiti UniFi Network Application allows unauthenticated attackers to read and manipulate files on the underlying host, enabling full account takeover of the controller managing an organization’s switches, access points, and gateways.
Read more about Emerging Threat: Ubiquiti UniFi Network Application Path Traversal (CVE-2026-22557)