n8n is vulnerable to Improper Restriction of Excessive Authentication Attempts
10
Low Risk
Vulnerable versions lack adequate protections to prevent multiple failed authentication attempts within a short time frame, making them more vulnerable to brute force attacks. The updated version introduces an optional rate-limiting login endpoint to help mitigate brute force password guessing attacks.
You are affected if you are using a version which is within vulnerability ranges and if your workflow tool is accessible from outside your network or if you are not using 2FA.
n8n is vulnerable to Improper Restriction of Excessive Authentication Attempts in versions 0.2.0 - 1.35.0.
Upgrade the n8n library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant