If you discover a (suspected) security vulnerability, please report it through our Vulnerability Disclosure Program.
Security: n8n-io/n8n
Security
SECURITY.md
-
Git Node fetch/pull/pushTags Operations Bypass Sandbox Path RestrictionGHSA-gf29-4f56-r2jf published
Jul 22, 2026 by csuermannHigh -
Bypass "Allowed HTTP Request Domains" Credential Restriction in Multiple AI and LLM NodesGHSA-64xh-79j6-r5v8 published
Jul 22, 2026 by csuermannHigh -
Account Takeover via Unverified Email Claim in Token Exchange Embed LoginGHSA-8342-988q-86cr published
Jul 22, 2026 by csuermannHigh -
Path-Confinement Bypass in computer-use search_files Allows Reading Files Outside the Base DirectoryGHSA-pf2q-pxhf-hgmw published
Jul 22, 2026 by csuermannModerate -
Credential Authorization Bypass via Expression in HTTP Request Node `genericAuthType`GHSA-6qc9-mqvw-jg7x published
Jul 22, 2026 by csuermannHigh -
Unauthenticated Endpoint Allows Cancellation of Any User's Active Test WebhookGHSA-33q9-f52j-gc75 published
Jul 8, 2026 by JubkeModerate -
AI Agents Project Viewer Privilege Escalation via run_node_toolGHSA-x5vx-c2c8-m3w9 published
Jul 8, 2026 by JubkeHigh -
SSO Instance-Role Provisioning Allows Privilege Escalation to Instance OwnerGHSA-35q8-9mj6-wjmf published
Jul 8, 2026 by JubkeHigh -
Custom Header Credential Values Leaked in Plaintext into LLM Node Execution DataGHSA-89gh-3pgc-v5h2 published
Jul 8, 2026 by JubkeModerate -
computer-use Shell Sandbox Not Enforced on Linux and WindowsGHSA-fpg6-x68q-5793 published
Jul 8, 2026 by JubkeModerate
Learn more about advisories related to n8n-io/n8n in the GitHub Advisory Database