logo

Automation at Risk: Triple 9.4 Severity RCE Flaws Threaten n8n Workflow Servers

ID: 45ba90e8-c2b4-5cb6-b456-9902a0bd88d5

STIX ID: report--45ba90e8-c2b4-5cb6-b456-9902a0bd88d5

Feed Name: securityonline.info

Threat Score
75/100

Date Published: 2026-02-26

Date Updated: 2026-04-23

Author: Ddos

...
...

n8n disclosed three critical vulnerabilities (CVE-2026-27497, CVE-2026-27577, CVE-2026-27495) that allow authenticated users with workflow creation/modification rights to achieve remote code execution or sandbox escape, potentially resulting in full host compromise; patches and short-term mitigations (permission restrictions, disabling nodes, runner mode changes, environment hardening) are recommended.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.