36 Total CVEs
36 AI Analyzed
1 CISA KEV
7 Critical

Profile

2.8% ended up actively exploited 1 of 36 added to CISA KEV
19% rated critical (CVSS 9.0+) 7 critical, 29 high
0 with a public exploit on record positive-only index; absence is not proof

Last 12 months

35 CVEs in the last 12 months

Products

  • n8n24
  • and row1
  • n8n Workflow Automation Platform1

3 products in total

Every figure counts the high and critical CVEs CVE Brief has published for this vendor, not every CVE the vendor has ever received. Exploitation means listing in the CISA Known Exploited Vulnerabilities catalog. No patch-availability figure is shown because CVE Brief does not measure it.

All Vendors
Showing 1-36 of 36 CVEs
CVE-2026-85169
Analyzed
8.7
n8n-io n8n

n8n versions before 1.123.73, 2.35.4, and 2.36.2 contain an expression sandbox escape in the $fromAI handler. $fromAI resolved a caller-supplied place...

2026-09-04
CVE-2026-77080
Analyzed
8.7
n8n-io n8n

n8n before 1

2026-08-21
CVE-2026-77075
Analyzed
8.4
n8n-io n8n

n8n before 1

2026-08-22
CVE-2026-77072
Analyzed
8.4
n8n-io n8n

n8n before 1

2026-08-22
CVE-2026-77068
Analyzed
8.7
n8n-io n8n

n8n before 2

2026-08-21
CVE-2026-72772
Analyzed
8.9
n8n-io n8n

n8n before 2

2026-08-12
CVE-2026-72767
Analyzed
8.7
n8n-io n8n

n8n before 1

2026-08-12
CVE-2026-72765
Analyzed
8.7
n8n-io n8n

n8n before 2

2026-08-12
CVE-2026-71539
Analyzed
8.9
n8n-io n8n

n8n is an open source workflow automation platform

2026-08-19
CVE-2026-65598
Analyzed
8.9
n8n-io n8n

n8n before 1

2026-07-23
CVE-2026-65597
Analyzed
8.2
n8n-io n8n

n8n before 1

2026-07-24
CVE-2026-65595
Analyzed
8.9
n8n-io n8n

n8n before 2

2026-07-23
CVE-2026-65592
Analyzed
8.4
n8n-io n8n

n8n before 1

2026-07-24
CVE-2026-65591
Analyzed
8.9
n8n-io n8n

n8n contains a sanitizer bypass vulnerability in the legacy expression evaluator's computed-member handler

2026-07-23
CVE-2026-65016
Analyzed
7.7
n8n-io n8n

n8n versions before 1

2026-07-24
CVE-2026-59208
Analyzed
7.6
n8n-io n8n

n8n is an open source workflow automation platform

2026-07-11
CVE-2026-54309
Analyzed
8.8
n8n-io n8n

n8n is an open source workflow automation platform

2026-06-24
CVE-2026-54307
Analyzed
8.5
n8n-io n8n

n8n is an open source workflow automation platform

2026-06-24
CVE-2026-54305
Analyzed
8.9
n8n-io n8n

n8n is an open source workflow automation platform

2026-06-24
CVE-2026-45732
Analyzed
8.3
n8n-io n8n

n8n is an open source workflow automation platform

2026-06-24
CVE-2026-44792
Analyzed
8.9
n8n-io n8n

n8n is an open source workflow automation platform

2026-06-24
CVE-2026-44791
Analyzed
9.4
n8n-io n8n

An authenticated workflow bypass vulnerability in the n8n XML node allows for Remote Code Execution (RCE) when chained with other nodes.

2026-06-24
CVE-2026-44790
Analyzed
9.4
n8n-io n8n

An authenticated user can inject CLI flags via the Git node's Push operation in n8n, enabling arbitrary file read access on the host server.

2026-06-24
CVE-2026-44789
Analyzed
9.4
n8n-io n8n

A prototype pollution vulnerability in n8n, exploitable via an unvalidated pagination parameter, can lead to remote code execution for authenticated u...

2026-06-24
CVE-2026-42229
Analyzed
8.8
n8n-io and row

n8n is an open source workflow automation platform

2026-05-06
CVE-2026-25056
Analyzed
8.8
n8n-io Multiple Products

n8n is an open source workflow automation platform

2026-02-06
CVE-2026-25055
Analyzed
8.1
n8n-io Multiple Products

n8n is an open source workflow automation platform

2026-02-06
CVE-2026-21877
Analyzed
9.9
n8n-io Multiple Products

n8n is an open source workflow automation platform. In versions 0.121.2 and below, an authenticated attacker may be able to execute malicious code usi...

2026-01-08
CVE-2026-21858
Analyzed
10
n8n-io Multiple Products

n8n is an open source workflow automation platform. Versions below 1.121.0 enable an attacker to access files on the underlying server through executi...

2026-01-08
CVE-2025-68697
Analyzed
7.1
n8n-io Multiple Products

n8n is an open source workflow automation platform

2025-12-27
CVE-2025-68668
Analyzed
9.9
n8n-io Multiple Products

n8n is an open source workflow automation platform. From version 1.0.0 to before 2.0.0, a sandbox bypass vulnerability exists in the Python Code Node...

2025-12-27
CVE-2025-68613
KEV Analyzed
9.9
n8n-io Multiple Products

n8n is an open source workflow automation platform. Versions starting with 0.211.0 and prior to 1.120.4, 1.121.1, and 1.122.0 contain a critical Remot...

2025-12-20
CVE-2025-62726
Analyzed
8.8
n8n-io Multiple Products

n8n is an open source workflow automation platform

2025-10-30
CVE-2025-61917
Analyzed
7.7
n8n-io n8n Workflow Automation Platform

n8n is an open source workflow automation platform

2026-02-05
CVE-2025-61914
Analyzed
7.3
n8n-io Multiple Products

n8n is an open source workflow automation platform

2025-12-27
CVE-2025-52478
Analyzed
8.7
n8n-io Multiple Products

n8n is a workflow automation platform

2025-08-19