CISA Adds Exploited N-able N-central Flaw to KEV After Customer Compromises
What happened
CISA has added CVE-2026-18577 to its Known Exploited Vulnerabilities catalog following reports of active exploitation. This high-severity authentication bypass in N-able N-central allows unauthenticated remote attackers to gain administrative control over management servers.
Why it ranks #1
Confirmed active exploitation and inclusion in CISA KEV places this at the highest priority tier for immediate enterprise remediation.
Who should care
IT and platform operations, SOC and incident response teams
What to do
Apply N-able security updates to address CVE-2026-18577 immediately.
- Impact
- high
- Urgency
- near-term
- Confidence
- high
- Scope
- enterprise
- Status
- disclosed