Security Advisories for n8n in npm
Moderate
26 days ago
n8n: Per-Resource OAuth Consent Bypass via Unbound Refresh Token Resource Substitution
npm
n8n
Moderate
26 days ago
n8n: Instance AI Credential Setup Accepts Unvalidated Probe URL from Fetched Content
npm
n8n
Moderate
26 days ago
n8n: Git Node branch.<name>.remote Config Key Bypasses Sandbox Path Restriction, Enabling Local Git Repository Read
npm
n8n
Moderate
26 days ago
n8n: Cross-Tenant Project-Member PII Disclosure via Missing Per-Project Scope Check on Role Assignment Endpoints
npm
n8n
Moderate
26 days ago
n8n: Log Streaming Event Destinations Decrypt Generic-Auth Credentials Without Ownership Check
npm
n8n
Moderate
26 days ago
n8n: Disabled OIDC SSO Endpoints Remain Active and Issue Valid Sessions
npm
n8n
Moderate
26 days ago
n8n: GitHub Trigger 422 Reuse Path Skips Webhook Secret Storage, Causing Signature Verification to Fail-Open
npm
n8n
Moderate
26 days ago
n8n: Path Injection in Elasticsearch and ElasticSecurity Nodes via Unencoded Identifiers
npm
n8n
Moderate
26 days ago
n8n: Prototype Pollution via Workflow Structure Summary Can Lead to Denial of Service
npm
n8n
Moderate
26 days ago
n8n: Cross-User Active Workflow ID and Lifecycle Event Disclosure via Missing userId Filter
npm
n8n
Moderate
26 days ago
n8n: Anonymous Approval-Gate Bypass via Reused resumeToken over the Chat WebSocket
npm
n8n
High
26 days ago
n8n: Domain-Restriction Bypass via Unguarded Model-Search Endpoint in OpenAI Chat Model Node
npm
n8n
High
26 days ago
n8n: Unauthenticated Persistent Storage Exhaustion via OAuth Dynamic Client Registration Endpoint
npm
n8n
High
26 days ago
n8n: Expression Sandbox Escape via Class-Field Sanitizer Rebinding Can Lead to Code Execution
npm
n8n
Moderate
3 months ago
n8n: Snowflake Node executeQuery Operation Allows SQL Injection via Unparameterized Expression Interpolation
npm
n8n
Moderate
3 months ago
n8n: Custom Header Credential Values Leaked in Plaintext into LLM Node Execution Data
npm
n8n
Moderate
3 months ago
n8n: Unauthenticated Endpoint Allows Cancellation of Any User's Active Test Webhook
npm
n8n
Moderate
3 months ago
n8n: Member-Level Users Can Execute Other Users' MCP Server Trigger Workflows via Missing OAuth Authorization Check
npm
n8n
Moderate
3 months ago
n8n: Authenticated Users Can Exhaust Temporary Disk Storage via Data-Table File Uploads
npm
n8n
Moderate
3 months ago
n8n: Improper Authorization Allows Authenticated Users to Assign Workflows to Folders in Other Projects
npm
n8n
Moderate
3 months ago
n8n: External Secrets Accessible via Workflow Expressions Outside Credentials
npm
n8n
Moderate
3 months ago
n8n: MySQL v1 Node executeQuery Operation Allows SQL Injection via Unparameterized Expression Interpolation
npm
n8n
Moderate
3 months ago
n8n: External Secrets Permission Bypass via Expression Parser Mismatch
npm
n8n
Moderate
3 months ago
n8n: Path-Confinement Bypass in computer-use search_files Allows Reading Files Outside the Base Directory
npm
n8n
Moderate
3 months ago
n8n: Prototype Pollution via VM Expression Engine Sandbox Escape Leads to Denial of Service
npm
n8n
High
3 months ago
n8n: Prototype Pollution via Dot-Notation Field Names Leads To Instance-Wide Denial of Service
npm
n8n
High
3 months ago
n8n: Shared-Workflow Editor Can Exfiltrate Credentials via Inline Sub-Workflow JSON
npm
n8n
High
3 months ago
n8n: Credential Authorization Bypass via Expression in HTTP Request Node `genericAuthType`
npm
n8n
High
3 months ago
n8n: Expression sandbox escape via arrow-function bodies enabling command execution
npm
n8n
High
3 months ago
n8n: Send Email Node Arbitrary File Read and SSRF via Nodemailer Content-Object Type Confusion
npm
n8n
High
3 months ago
n8n: Git Node fetch/pull/pushTags Operations Bypass Sandbox Path Restriction
npm
n8n
High
3 months ago
n8n: Bypass "Allowed HTTP Request Domains" Credential Restriction in Multiple AI and LLM Nodes
npm
n8n
High
3 months ago
n8n: Account Takeover via Unverified Email Claim in Token Exchange Embed Login
npm
n8n
High
3 months ago
n8n: SSO Instance-Role Provisioning Allows Privilege Escalation to Instance Owner
npm
n8n
High
3 months ago
n8n: Legacy Expression Evaluator Sanitizer Bypass Leads to Authenticated Code Execution
npm
n8n
Moderate
3 months ago
n8n: Authenticated SSRF via Dynamic Node Parameters Endpoints Allows Internal Network Access
npm
n8n
High
3 months ago
n8n: Cross-Issuer Token Exchange Account Binding via Subject-Only Identity Resolution
npm
n8n
High
3 months ago
n8n: "Allowed HTTP Request Domains" Restriction Bypass via AI Agents MCP Connector
npm
n8n
High
3 months ago
n8n: Prototype Pollution via Workflow Credentials Leads to Unauthenticated User and Project Enumeration
npm
n8n
High
3 months ago
n8n: Race Condition in Git Clone Node Allows Authenticated Users to Achieve Remote Code Execution
npm
n8n
High
4 months ago
n8n: MCP Browser HTTP Transport Exposes Unauthenticated Browser-Control Sessions
npm
n8n
High
4 months ago
n8n: Cross-Tenant Credential Takeover via Dynamic Credentials EE Endpoints
npm
n8n
Moderate
4 months ago
n8n: Reflected XSS via Facebook, WhatsApp, and Microsoft Teams Trigger Webhook Verification Endpoints
npm
n8n
Moderate
4 months ago
n8n: Prototype Pollution enables confused-deputy execution via public webhooks
npm
n8n
Moderate
4 months ago
n8n: Missing Token Validation on Microsoft Agent 365 Trigger and Stripe Nodes
npm
n8n
High
5 months ago
n8n Has a Cross-user Authorization Bypass in Dynamic Credential OAuth Endpoints
npm
n8n
Critical
5 months ago
n8n has Prototype Pollution in XML Webhook Body Parser that Leads to RCE
npm
n8n
High
5 months ago
n8n's Credential Authorization Bypass in dynamic-node-parameters Allows Foreign API Key Replay
npm
n8n
Moderate
5 months ago
n8n has Public API Variables IDOR that Allows Cross-Project Secret Disclosure
npm
n8n
High
5 months ago
n8n Vulnerable to Unauthenticated Denial of Service via MCP Client Registration
npm
n8n