VYPR

N8n

by N8n Io

npm: n8n

Source repositories

CVEs (183)

  • CVE-2026-56777MedJun 30, 2026
    risk 0.00cvss 5.0epss 0.00

    n8n before 2.25.7 and 2.26.x before 2.26.2 contains an abstract syntax tree (AST) security validator bypass in the Python Code node. An authenticated user with permission to create or modify workflows containing a Python Code node can bypass the validator and access the task…

  • CVE-2026-56356MedJun 30, 2026
    risk 0.00cvss 5.4epss 0.00

    n8n contains a stored cross-site scripting vulnerability in the Chat Trigger node's Custom CSS field due to a misconfiguration of the sanitize-html library. Affected releases are those before 1.123.27, the 2.0.0 through 2.13.2 line, and 2.14.0 (fixed in 1.123.27, 2.13.3, and…

  • CVE-2026-56350MedJun 30, 2026
    risk 0.00cvss 6.3epss 0.00

    n8n before 2.8.0 contains an authentication bypass vulnerability allowing authenticated SSO users to disable SSO enforcement through the API. Attackers can create local password credentials to authenticate directly, bypassing organizational SSO policies and…

Page 10 of 10