CVE-2026-22558

An Authenticated NoSQL Injection vulnerability found in UniFi Network Application could allow a malicious actor with authenticated access to the network to escalate privileges.
Configurations

No configuration.

History

30 Apr 2026, 16:14

Type Values Removed Values Added
Summary
  • (es) Una vulnerabilidad de inyección NoSQL autenticada encontrada en la aplicación UniFi Network podría permitir a un actor malicioso con acceso autenticado a la red escalar privilegios.

19 Mar 2026, 15:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-19 15:16

Updated : 2026-04-30 16:14


NVD link : CVE-2026-22558

Mitre link : CVE-2026-22558

CVE.ORG link : CVE-2026-22558


JSON object : View

Products Affected

No product.

CWE
CWE-943

Improper Neutralization of Special Elements in Data Query Logic