A series of Improper Input Validation vulnerabilities...
Critical severity
Unreviewed
Published
Apr 14, 2026
to the GitHub Advisory Database
•
Updated Apr 14, 2026
Description
Published by the National Vulnerability Database
Apr 13, 2026
Published to the GitHub Advisory Database
Apr 14, 2026
Last updated
Apr 14, 2026
A series of Improper Input Validation vulnerabilities could allow a Command Injection by a malicious actor with access to the UniFi Play network.
Affected Products:
UniFi Play PowerAmp (Version 1.0.35 and earlier)
UniFi Play Audio Port (Version 1.0.24 and earlier)
Mitigation:
Update UniFi Play PowerAmp to Version 1.0.38 or later
Update UniFi Play Audio Port to Version 1.1.9 or later
References