CVE-2025-11700: N-able N-central

High severity, CVSS 7.5. EPSS: 30.7% chance of exploitation in the next 30 days.

N-central versions < 2025.4 are vulnerable to multiple XML External Entities injection leading to information disclosure

Affected products

  • N-able N-central: before 2025.4 (fixed in 2025.4)

Published 2025-11-12. Last modified 2026-06-17.