[NEW] [high] n8n: Multiple vulnerabilities
An attacker can exploit multiple vulnerabilities in n8n to bypass security measures, conduct a denial of service attack, disclose information, manipulate files, perform an SQL injection attack, and execute arbitrary code.
CSIRTS triage
- What
- An attacker can exploit multiple vulnerabilities in n8n to bypass security measures, conduct a denial of service attack, disclose information, manipulate files, perform an SQL injection attack, and execute arbitrary code.
- Who is affected
- Users and deployments of n8n.
- Urgency
- Remediation is high urgency due to the variety of severe vulnerabilities including remote code execution.
- Action
- Update n8n to the latest version to mitigate these vulnerabilities.
AI-assisted analysis generated from the source advisory — verify against the original.
⚡ Watch n8n
Get an email when a new n8n advisory drops — max one per day, one-click unsubscribe.
Details
Original advisory: https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-2489
Recent advisories for n8n
A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.
- high[NEW] [high] n8n: Multiple vulnerabilitiescert-bund · 2026-09-04
- unknownn8n security advisory (AV26-880)cccs · 2026-09-03
- unknownCVE-2026-85173: n8n versions before 2.36.2 contain a missing per-project authorization vulnerability in the In…nvd · 2026-09-03
- unknownCVE-2026-85172: n8n versions before 2.34.1 contain a server-side request forgery vulnerability in the legacy r…nvd · 2026-09-03
- unknownCVE-2026-85171: n8n before 1.123.73, 2.35.4, and 2.36.2 contains a credential exposure vulnerability in the St…nvd · 2026-09-03
- unknownCVE-2026-85170: n8n versions before 1.123.73, 2.35.4, and 2.36.2 pass message content in the Gmail (v1) and Br…nvd · 2026-09-03
More from CERT-Bund (BSI) Security Advisories
- medium[NEW] [medium] Langflow: Multiple vulnerabilities2026-09-04
- medium[NEW] [medium] Grafana Enterprise: Multiple vulnerabilities allow gaining user or administrator privileges2026-09-04
- low[NEW] [low] Checkmk: Vulnerability allows Denial of Service2026-09-04
- low[NEW] [low] ImageMagick: Multiple vulnerabilities allow Denial of Service2026-09-04
- critical[NEW] [critical] vm2: Multiple vulnerabilities allow code execution2026-09-04