Package Health

n8n

n8n Workflow Automation Tool

Latest 2.15.1NPMNPM

78%

Total Score

Maintainer Stability
Maintainer Stability
Assesses the consistency and reliability of package maintainers

61

Dependencies
Dependencies
Evaluates the health and security of package dependencies

30

Maturity
Maturity
Indicates package age, release frequency, and adoption metrics

100

Supply Chain
Supply Chain
Evaluates supply chain security practices and risks

100

Attestations
Attestations
Measures the presence and validity of package attestations and signatures

100

Vulnerabilities

TitleVersionsSeverity
CVE-2026-33751
n8n is vulnerable to Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection') in versions 0.0.0 - 1.123.27, 2.14.0 - 2.14.0 and 2.0.0-rc.0 - 2.13.3.
0.0.0 - 1.123.272.0.0-rc.0 - 2.13.32.14.0 - 2.14.0
Medium
CVE-2026-33749
n8n is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 1.123.27, 2.14.0 - 2.14.0 and 2.0.0-rc.0 - 2.13.3.
0.0.0 - 1.123.272.0.0-rc.0 - 2.13.32.14.0 - 2.14.0
High
CVE-2026-33713
n8n is vulnerable to Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in versions 0.0.0 - 1.123.26, 2.14.0 - 2.14.0 and 2.0.0-rc.0 - 2.13.3.
0.0.0 - 1.123.262.0.0-rc.0 - 2.13.32.14.0 - 2.14.0
Critical
CVE-2026-33696
n8n is vulnerable to Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') in versions 2.14.0 - 2.14.0, 2.0.0-rc.0 - 2.13.3 and 0.0.0 - 1.123.27.
0.0.0 - 1.123.272.0.0-rc.0 - 2.13.32.14.0 - 2.14.0
Critical
CVE-2026-33724
n8n is vulnerable to Authorization Bypass Through User-Controlled Key in versions 0.0.0 - 2.5.0.
0.0.0 - 2.5.0
Medium

Package versions

Direct Dependencies

DependencyLast ReleaseScore
pg
Version 8.17.0
ws
Version 8.17.1
psl
Version 1.9.0
xss
Version 1.0.15
zod
Version 3.25.67

Weekly Downloads

Info

Last Published
21 hours ago
Created
6 years ago
Unpacked Size
9.4 MB