Junglewise Threat Intelligence

CVE-2026-55113: Ubiquiti UniFi Talk SSRF and authentication bypass

CVE-2026-55113 · Severity: high · CVSS 7.5 · Published 2026-07-02

Technologies: Ubiquiti UniFi Talk Application. Vendors: Ubiquiti, Ubiquiti Inc.

Executive brief

Ubiquiti UniFi Talk is a business communication system used for managing VoIP phone services. A security flaw has been identified that allows an attacker on the network to trick the system into making unauthorized requests. This could lead to a disruption of phone services or allow the attacker to bypass security checks to access certain administrative functions.

Technical details

A Server-Side Request Forgery (SSRF) vulnerability (CWE-918) exists in the Ubiquiti UniFi Talk Application in versions prior to 5.2.2. An unauthenticated attacker with network access can exploit this flaw to induce the application to make unintended requests. This can be leveraged to bypass authentication mechanisms on specific internal API endpoints or to trigger a Denial of Service (DoS) condition. The vulnerability has a high complexity (AC:H) and results in a changed scope (S:C) according to the CVSS metrics. Users are advised to update to UniFi Talk Application version 5.2.2 or later to mitigate this risk.

Affected products

  • Ubiquiti Inc UniFi Talk Application versions prior to 5.2.2

Timeline

  • 2026-07-02: disclosed
  • 2026-07-02: advisory

References

Related threats