Логотип exploitDog
bind:CVE-2026-25056
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2026-25056

Количество 2

Количество 2

nvd логотип

CVE-2026-25056

4 дня назад

n8n is an open source workflow automation platform. Prior to versions 1.118.0 and 2.4.0, a vulnerability in the Merge node's SQL Query mode allowed authenticated users with permission to create or modify workflows to write arbitrary files to the n8n server's filesystem potentially leading to remote code execution. This issue has been patched in versions 1.118.0 and 2.4.0.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-hv53-3329-vmrm

4 дня назад

n8n Merge Node has Arbitrary File Write leading to RCE

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-25056

n8n is an open source workflow automation platform. Prior to versions 1.118.0 and 2.4.0, a vulnerability in the Merge node's SQL Query mode allowed authenticated users with permission to create or modify workflows to write arbitrary files to the n8n server's filesystem potentially leading to remote code execution. This issue has been patched in versions 1.118.0 and 2.4.0.

CVSS3: 8.8
0%
Низкий
4 дня назад
github логотип
GHSA-hv53-3329-vmrm

n8n Merge Node has Arbitrary File Write leading to RCE

0%
Низкий
4 дня назад

Уязвимостей на страницу