CVE-2026-86207High· 7.7▾ MidnightPoC availableAn authentication bypass in N-central < 2026.3 HF 3 leads to authentication bypass in internal only APIs
▾ Midnight zone — Critical, or high with PoC / in-the-wild
impact 42.4 · likelihood 0.1 · exploitation 12
A public proof-of-concept already exists for this vulnerability — see Exploit availability below.
Public exploit / PoC code seen in 1 source. Availability, not in-the-wild use.
Stakeholder-Specific Vulnerability Categorization from CISA's ADP record at CVE.org: whether exploitation is observed, whether an attack can be automated, and how much of the system is at stake. The CVSS score shown above comes from the assigning CNA record, not NVD.
Exploit-prediction probability, daily snapshots since Sep 6.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
0.3%
Last analysed / modified upstream
0.3% → 0.7%
Nuclei ×1
An authentication bypass in N-central < 2026.3 HF 3 leads to authentication bypass in internal only APIs
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Field changes observed since this record was first indexed.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-86206Medium· 6.9A vulnerability in the N-central internal API access control filter allows unauthorised access to internal APIs
CVE-2026-86218Critical· 9.8N-central is vulnerable to a pre-auth remote code execution This issue affects N-central: before 2026.3.1.14.
CVE-2025-68624Medium· 4.3N-able Mail Assure through April 2026 contains a design-level authorization flaw that allows an authenticated SMTP user to send outbound email using MAIL FROM addresses belonging to other tenants
CVE-2026-81578Critical· 9.8An improper access control vulnerability exists in the web management interface of PaperCut MF and PaperCut NG
CVE-2026-6266High· 8.3A flaw was found in the AAP gateway
CVE-2026-8932High· 7.5libcurl would reuse a previously created connection even when some mTLS config related option had been changed that should have prohibited reuse. libcurl keeps previously used connections in a connection pool for subsequent transfers to…