Just letting people know about this. Just discovered it now.
Anyone running a cloud key Gen 2 or Cloud Key Gen 2 Plus should update to Unifi OS 3.1.13 or above to avoid having this vulnerability exposed on your network.
More details:
https://community.ui.com/releases/Security-Advisory-Bulletin-032-032/e57301f4-4f5e-4d9f-90bc-71f1923ed7a4