n8n-core is vulnerable to Race Condition
35
Low Risk
Affected versions of this package's AI tool process multiple tasks concurrently with an asynchronous function handling that could use the same runIndex for various items. An attacker might be able to manipulate the timing of concurrent tasks to exploit the race condition, leading to misbehaviors, such as outages or data corruption.
You are affected if you are using a version that falls within the vulnerable range.
n8n-core is vulnerable to Race Condition in versions 1.58.0 - 1.72.1.
Upgrade the n8n-core library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant