Intel

AIKIDO-2026-114611

n8n is vulnerable to Insufficient Verification of Data Authenticity

Insufficient Verification of Data AuthenticityCVE-2026-72772 Published Yesterday

89

High Risk

This Affects:

JSn8n
2.17.0 - 2.31.4
Fixed in 2.31.5
2.32.0 - 2.32.0
Fixed in 2.32.1
Are you affected? Scan for Free

TL;DR

Token Exchange Embed Login matches a validly signed incoming token to a local account by email claim without verifying that the email claim is verified or that the trusted key's permitted role ceiling covers that account. Anyone who can obtain a token accepted by a configured trusted key can authenticate as any existing user and take over the account. The fix requires a verified email claim and enforces the trusted key's role ceiling before completing the exchange.

Who does this affect?

You are affected if you are using a version that falls within the vulnerable range and have the embed login feature enabled with at least one trusted key source configured.

Background info

n8n is vulnerable to Insufficient Verification of Data Authenticity in versions 2.17.0 - 2.31.4 and 2.32.0 - 2.32.0.

How to fix this

Upgrade the n8n library to the patch version.