Unrated severityNVD Advisory· Published Jul 4, 2026· Updated Jul 6, 2026
n8n - Arbitrary Command Execution via Execute Command Node
CVE-2025-71380
Description
The Execute Command node in n8n allows authenticated users to execute arbitrary commands on the host system where n8n runs. Attackers with user access or compromised credentials can exploit this node to run malicious commands, potentially leading to data exfiltration, service disruption, or complete system compromise.
Patches
Vulnerability mechanics
References
2- github.com/n8n-io/n8n/security/advisories/GHSA-365g-vjw2-grx8mitrevendor-advisory
- www.vulncheck.com/advisories/n8n-arbitrary-command-execution-via-execute-command-nodemitrethird-party-advisory
News mentions
0No linked articles in our index yet.