6.5
/ 10
MEDIUM
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Description
A malicious actor with access to the adjacent network could overflow the UniFi Protect Application (Version 6.1.79 and earlier) discovery protocol causing it to restart.
Affected Products:
UniFi Protect Application (Version 6.1.79 and earlier).
Mitigation:
Update your UniFi Protect Application to Version 6.2.72 or later.
Affected Products:
UniFi Protect Application (Version 6.1.79 and earlier).
Mitigation:
Update your UniFi Protect Application to Version 6.2.72 or later.
Basic Information
ID
CVE-2026-21634
Source
hackerone
Published
Jan 5, 2026 at 16:47
Affected Product
Vendor
Ubiquiti Inc
Product
UniFi Protect Application
Version
6.1.79
Affected Versions
Ubiquiti Inc UniFi Protect Application 6.1.79