VYPR

Unifi Talk Application

by UI

CVEs (4)

  • CVE-2026-77554CriAug 26, 2026
    risk 0.65cvss 10.0epss 0.02

    A malicious actor with access to the network could exploit an Improper Input Validation vulnerability found in UniFi Talk Application to execute a Command Injection on the host device.

  • CVE-2026-55119HigJul 2, 2026
    risk 0.00cvss 8.1epss 0.00

    A malicious actor with access to the network and low privileges could exploit an Improper Access Control vulnerability found in UniFi Talk Application to escalate privileges within the UniFi Talk Application.

  • CVE-2026-55113HigJul 2, 2026
    risk 0.00cvss 7.5epss 0.00

    A malicious actor with access to the network could exploit a Server-Side Request Forgery (SSRF) vulnerability found in UniFi Talk Application to execute a Denial of Service (DoS) attack and bypass authentication in certain UniFi Talk API endpoints.

  • CVE-2026-50747CriJul 2, 2026
    risk 0.00cvss 9.9epss 0.00

    A malicious actor with access to the network and low privileges could exploit a series of authenticated SQL Injection vulnerabilities found in UniFi Talk Application to escalate privileges on the host device.