Junglewise Threat Intelligence

CVE-2026-77549: Ubiquiti UniFi OS CRLF injection authentication bypass

CVE-2026-77549 · Severity: critical · CVSS 9 · Published 2026-08-26

Technologies: Ubiquiti UniFi OS. Vendors: Ubiquiti.

Executive brief

UniFi OS is network management software used to control and monitor networking devices and WiFi infrastructure. An attacker with network access could exploit improper handling of CRLF (carriage return/line feed) sequences to bypass authentication and gain unauthorized access to UniFi OS devices or cloud instances, potentially compromising the entire network infrastructure.

Technical details

The vulnerability is an improper neutralization of CRLF sequences (CWE-93) in UniFi OS authentication handling. An attacker with network access can craft malicious input containing CRLF characters to inject unintended control sequences, bypassing authentication mechanisms. No user interaction or prior authentication is required; the attack is triggered by network-level manipulation of input data. Successful exploitation allows an attacker to gain unauthorized administrative access to UniFi OS instances. Patches are available through Ubiquiti's security advisories.

Affected products

  • Ubiquiti UniFi OS

Timeline

  • 2026-08-26: disclosed

References

Related threats