CVE-2026-86206
Access control filter bypass allows unauthorised access to APIs
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
A vulnerability in the N-central internal API access control filter allows unauthorised access to internal APIs. This is fixed in N-central 2026.3 HF3 and 2026.4
| CWE | CWE-791 |
| Vendor | n-able |
| Product | n-central |
| Published | Sep 5, 2026 |
| Last Updated | Sep 8, 2026 |
Stay Ahead of the Next One
Get instant alerts for n-able n-central
Be the first to know when new unknown vulnerabilities affecting n-able n-central are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
N-able / N-central
0 < 2026.3.1.13
References
Credits
Michael Tigges of Huntress Stephen Fewer, Senior Principal Researcher, Rapid7