n8n Workflow Automation Tool
91%
Total Score
60
95
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2026-25049 n8n is vulnerable to Improper Control of Dynamically-Managed Code Resources in versions 0.0.0 - 1.123.17 and 2.0.0 - 2.5.2. | 0.0.0 - 1.123.172.0.0 - 2.5.2 | Critical |
CVE-2026-25052 n8n is vulnerable to Time-of-check Time-of-use (TOCTOU) Race Condition in versions 2.0.0 - 2.5.0 and 0.0.0 - 1.123.18. | 0.0.0 - 1.123.182.0.0 - 2.5.0 | Critical |
CVE-2026-25051 n8n is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 1.123.0 - 1.123.2 and 0.0.0 - 1.122.5. | 0.0.0 - 1.122.51.123.0 - 1.123.2 | High |
CVE-2026-21893 n8n is vulnerable to Improper Input Validation in versions 0.187.0 - 1.120.3. | 0.187.0 - 1.120.3 | Critical |
CVE-2025-61917 n8n is vulnerable to Exposure of Sensitive Information to an Unauthorized Actor in versions 1.65.0 - 1.114.3. | 1.65.0 - 1.114.3 | High |
| Dependency | Last Release | Score |
|---|---|---|
pg Version 8.17.0 | — | — |
ws Version 8.17.1 | — | — |
psl Version 1.9.0 | — | — |
xss Version 1.0.15 | — | — |
zod Version 3.25.67 | — | — |
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant