n8n Workflow Automation Tool
93%
Total Score
64
100
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2026-45732 n8n is vulnerable to Authorization Bypass Through User-Controlled Key in versions 0.0.0 - 1.123.43, 2.21.0 - 2.21.1 and 2.0.0-rc.0 - 2.20.7. | 0.0.0 - 1.123.432.0.0-rc.0 - 2.20.72.21.0 - 2.21.1 | High |
CVE-2026-44792 n8n is vulnerable to Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in versions 0.0.0 - 1.123.43, 2.21.0 - 2.21.1 and 2.0.0-rc.0 - 2.20.7. | 0.0.0 - 1.123.432.0.0-rc.0 - 2.20.72.21.0 - 2.21.1 | High |
CVE-2026-44791 n8n is vulnerable to Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') in versions 0.0.0 - 1.123.43, 2.21.0 - 2.22.1 and 2.0.0-rc.0 - 2.20.7. | 0.0.0 - 1.123.432.0.0-rc.0 - 2.20.72.21.0 - 2.22.1 | Critical |
CVE-2026-44790 n8n is vulnerable to Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') in versions 0.0.0 - 1.123.43, 2.21.0 - 2.22.1 and 2.0.0-rc.0 - 2.20.7. | 0.0.0 - 1.123.432.0.0-rc.0 - 2.20.72.21.0 - 2.22.1 | Critical |
CVE-2026-44789 n8n is vulnerable to Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') in versions 0.0.0 - 1.123.43, 2.21.0 - 2.22.1 and 2.0.0-rc.0 - 2.20.7. | 0.0.0 - 1.123.432.0.0-rc.0 - 2.20.72.21.0 - 2.22.1 | Critical |
| Dependency | Last Release | Score |
|---|---|---|
pg Version 8.17.0 | — | — |
ws Version 8.17.1 | — | — |
psl Version 1.9.0 | — | — |
xss Version 1.0.15 | — | — |
zod Version 3.25.67 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant