logo

Popular n8n Platform Hit by Triple Threat of RCE Flaws

ID: ce3e58ff-19ee-53ea-a547-fb91cad3ea26

STIX ID: report--ce3e58ff-19ee-53ea-a547-fb91cad3ea26

Feed Name: securityonline.info

Threat Score
78/100

Date Published: 2026-02-06

Date Updated: 2026-04-23

Author: Ddos

...
...

The n8n workflow automation platform has three critical vulnerabilities (CVE-2026-25053, CVE-2026-25056, CVE-2026-25049) allowing authenticated users with workflow creation/edit permissions to execute arbitrary commands, read arbitrary files, or write arbitrary files on the host, potentially enabling full host takeover; patches are available in specific 2.x and 1.x versions and immediate upgrades or strict permission restrictions are recommended.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.