N-central vulnerabilities
CVEs whose affected-version data names the N-central package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
3 CVEsRSS
CVE-2026-86218Critical· 9.8CISA KEVPoCN-central is vulnerable to a pre-auth remote code execution This issue affects N-central: before 2026.3.1.14.
N-central is vulnerable to a pre-auth remote code execution This issue affects N-central: before 2026.3.1.14.
▾ Hadaln-able · n-centralEPSS 7.5%via NVD
CVE-2026-86206Medium· 6.9PoCA vulnerability in the N-central internal API access control filter allows unauthorised access to internal APIs
A vulnerability in the N-central internal API access control filter allows unauthorised access to internal APIs. This is fixed in N-central 2026.3 HF3 and 2026.4
▾ TwilightN-able · N-centralEPSS 0.68%via NVD
CVE-2026-86207High· 7.7PoCAn authentication bypass in N-central < 2026.3 HF 3 leads to authentication bypass in internal only APIs
An authentication bypass in N-central < 2026.3 HF 3 leads to authentication bypass in internal only APIs
▾ MidnightN-able · N-centralEPSS 0.73%via NVD