security1 publisher
CISA put N-able's pre-auth N-central RCE on KEV three days after the hotfix shipped
CVE-2026-86218 lets an unauthenticated attacker run code on an N-central server with no user interaction. N-able fixed it in build 2026.3.1.14 and has already patched its own hosted instances.
Publishers:horizon3.ai
Reality
- Evidence74
- Adoption48
- Hype gap+8
- Incentives72
- Confidence66