n8n Vulnerabilities

npm AI Agents

AI Threat Alert tracks 229 known vulnerabilities in n8n, 24 rated critical — an AI/ML ai agents in the npm ecosystem. Each CVE includes CVSS severity, EPSS exploit probability, patch status, and CISO-grade analysis.

Data sources
69
Risk Score
229
Total CVEs
24
Critical
npm
Ecosystem
Sep 8, 2026
Last CVE
53%
Patch Rate
5d
Avg Time to Patch
206,068 stars 60,893 forks 1,108 issues Last push Sep 27, 2026
View on GitHub
OpenSSF Scorecard 6.7/10

Known Vulnerabilities (229 total, page 2 of 10)

Severity CVE ID Summary CVSS Published
UNKNOWN CVE-2026-85165 n8n: expression sandbox bypass mutates host globals -- Sep 3, 2026 MEDIUM CVE-2026-54687 n8n-nodes-sqlite3: path traversal via db_path -- Aug 27, 2026 MEDIUM CVE-2026-77083 n8n: Code node sandbox escape via proto pollution -- Aug 20, 2026 HIGH CVE-2026-77077 n8n: EventEmitter prototype pollution enables sandbox RCE -- Aug 20, 2026 HIGH CVE-2026-77079 n8n: authz bypass in role deletion grants project admin -- Aug 20, 2026 HIGH CVE-2026-77080 n8n: Snowflake node allows arbitrary file read/write -- Aug 20, 2026 MEDIUM CVE-2026-77085 n8n: SSRF protection bypass in SearXNG Agent tool -- Aug 20, 2026 MEDIUM CVE-2026-77082 n8n: ReDoS in Filter/Switch nodes stalls workers -- Aug 20, 2026 HIGH CVE-2026-77084 n8n: RCE via unsanitized Git node config values -- Aug 20, 2026 MEDIUM CVE-2026-77081 n8n: GraphQL node allowed-domains bypass leaks creds -- Aug 20, 2026 MEDIUM CVE-2026-77074 n8n: SSRF/LFI via MVG injection in Edit Image node -- Aug 20, 2026 HIGH CVE-2026-77075 n8n: expression injection executes JS in victim session -- Aug 20, 2026 HIGH CVE-2026-77070 n8n: NoSQL injection in MongoDB node wipes/exfils data -- Aug 20, 2026 HIGH CVE-2026-77076 n8n: GraphQL error leaks decrypted credential secret -- Aug 20, 2026 MEDIUM CVE-2026-77073 n8n: MCP auth bypass grants cross-project credentials -- Aug 20, 2026 HIGH CVE-2026-77072 n8n: stored XSS in Form node completion page -- Aug 20, 2026 HIGH CVE-2026-77071 n8n: Supabase filter injection leaks/wipes full tables -- Aug 20, 2026 LOW CVE-2026-77069 n8n: SSRF bypass in OAuth2 token exchange -- Aug 20, 2026 HIGH CVE-2026-77068 n8n: RCE via path traversal in MCP schema loader -- Aug 20, 2026 UNKNOWN CVE-2026-71539 n8n: Git node symlink race leads to RCE -- Aug 18, 2026 HIGH CVE-2026-72775 n8n: SQL injection via PostgresTrigger node 8.8 Aug 11, 2026 UNKNOWN CVE-2026-72774 n8n: credential auth bypass in HTTP Request node -- Aug 11, 2026 HIGH CVE-2026-72773 n8n: path traversal leaks arbitrary local files 7.7 Aug 11, 2026 UNKNOWN CVE-2026-72772 n8n: account takeover via unverified SSO email claim -- Aug 11, 2026 MEDIUM CVE-2026-72771 n8n: allowlist bypass in AI nodes leaks credentials 6.5 Aug 11, 2026

Showing 26–50 of 229

Frequently asked questions

What is n8n?

n8n is an AI/ML ai agents tracked by AI Threat Alert for security vulnerabilities in the npm ecosystem.

How many known vulnerabilities does n8n have?

n8n has 229 known CVEs, 24 of them critical, tracked from NVD and GitHub Advisory.

Which ecosystem is n8n distributed in?

n8n is distributed via the npm ecosystem and categorized as ai agents.

Where does the n8n vulnerability data come from?

Vulnerability data is sourced from NVD and GitHub Advisory, enriched with CVSS, EPSS, exploit signals, and patch status for each CVE.

How do I assess the risk of n8n?

Review each CVE below — every entry shows CVSS severity, EPSS exploit probability, exploitation signals, and whether a patched version is available.

Monitor n8n in your stack

Get instant alerts when new vulnerabilities affect n8n. CISO analysis, ATLAS technique mappings, and compliance reports included.

Start Monitoring