CVE Watchtower ← Back to CVE ListCVE-2026-86206NVDVulnerability SummaryA vulnerability in the N-central internal API access control filter allows unauthorised access to internal APIs. This is fixed in N-central 2026.3 HF3 and 2026.4Severity LevelMEDIUM(6.9)Published DateSep 5, 2026Last ModifiedSep 5, 2026Exploitation StatusNo confirmed exploitation yetEPSS Score (30-Day)0.29%ProbabilityRoot Weakness (CWE)N/ACVSS v4.0 Base MetricsExternal Referenceshttps://documentation.n-able.com/N-central/Release_Notes/GA/Content/N-central_2026.3_HF3_Release_Notes.htmhttps://me.n-able.com/s/security-advisory/aArVy0000002LTNKA2/cve202686206-access-control-filter-bypass-allows-unauthorised-access-to-apis