CVE-2026-77556

Summary

A malicious actor with access to the network could exploit an Out-of-bounds Read vulnerability found in certain UniFi gateway devices to execute a Denial of Service (DoS) attack on the device.

Affected Software

VendorProductVersion RangeStatus
Ubiquiti IncDream Machines0 < 5.1.31affected
Ubiquiti IncEnterprise Firewalls0 < 5.1.31affected
Ubiquiti IncDream Routers0 < 5.1.31affected
Ubiquiti IncCloud Gateways0 < 5.1.31affected
Ubiquiti IncDream Wall0 < 5.1.31affected
Ubiquiti IncExpress0 < 4.0.21affected
Ubiquiti IncExpress 70 < 5.1.31affected
Ubiquiti IncUniFi Gateways0 < 5.1.26affected

Weaknesses

  • CWE-125: CWE-125 Out-of-bounds read

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: yes
    • Technical Impact: partial

References