CVE-2026-86207CWE-305

CVE-2026-86207

published September 5, 2026

CVSS
7.7
EPSS
In the wild
Unconfirmed
What it is

An authentication bypass in N-central < 2026.3 HF 3 leads to authentication bypass in internal only APIs

The record
Technical detail
CVSS
7.7 · NONE
CVSS v4.0
7.7 · CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
EPSS
Not scored
Weakness
CWE-305 · Authentication Bypass by Primary Weakness
Published
2026-09-05T23:16Z
References (2)
Timeline
  • 05 SEP 19:12Z
    Authentication bypass leads to unauthorised access to N-central
    cvelistv5