logo

n8n security woes roll on as new critical flaws bypass December fix

ID: f905e32e-9e42-5212-94fa-a64fd95df5f3

STIX ID: report--f905e32e-9e42-5212-94fa-a64fd95df5f3

Feed Name: The Register (Security)

Threat Score
85/100

Date Published: 2026-02-05

Date Updated: 2026-04-26

Author: Carly Page

...
...

Multiple critical vulnerabilities (CVE-2026-25049) in the n8n automation platform allow authenticated users to inject crafted expressions into workflows that can execute system-level commands, potentially resulting in full server takeover and exposure of stored credentials (including API keys for OpenAI, Anthropic, AWS). Proof-of-concept shows low-effort exploitation via unauthenticated webhooks and JavaScript destructuring; patches have been released and organizations are urged to update, review permissions/workflows, and rotate sensitive credentials, with elevated risk for n8n Cloud multi-tenant environments.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.