CVE-2026-18577 is under active exploitation, letting attackers bypass N-able N-central authentication and pivot from servers into managed endpoints.

N-able says attackers exploited an N-central authentication bypass to take over servers, reach managed endpoints, and preserve access with Cloudflare

N-able has told customers that attackers broke into servers running its N-central platform, took administrative control without needing a password, and used that access to reach…