First published · Last updated
CVE-2026-86218: N-able N-central Static Code Injection Vulnerability
N-able N-central contains a static code injection vulnerability that could allow for pre-authentication remote code execution. The advisory directs stakeholders to apply vendor mitigations and follow CISA's BOD 26-04 and Forensics Triage Requirements guidance or discontinue use if mitigations are unavailable.
Categories: technology
Generated scores
Scores are based on the cited reporting and use a 1–10 scale. Read the methodology.
- Confidence
- 6/10
- Geographic reach
- 3/10
- Global importance
- 3/10
- Impact magnitude
- 4/10
- Positivity
- 2/10
- Urgency
- 6/10
Why it matters
Pre-authentication remote code execution could allow attackers to run code on affected systems.

