n8n Workflow Automation Tool
78%
Total Score
61
30
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2026-33751 n8n is vulnerable to Improper Neutralization of Special Elements used in an LDAP Query ('LDAP Injection') in versions 0.0.0 - 1.123.27, 2.14.0 - 2.14.0 and 2.0.0-rc.0 - 2.13.3. | 0.0.0 - 1.123.272.0.0-rc.0 - 2.13.32.14.0 - 2.14.0 | Medium |
CVE-2026-33749 n8n is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 0.0.0 - 1.123.27, 2.14.0 - 2.14.0 and 2.0.0-rc.0 - 2.13.3. | 0.0.0 - 1.123.272.0.0-rc.0 - 2.13.32.14.0 - 2.14.0 | High |
CVE-2026-33713 n8n is vulnerable to Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in versions 0.0.0 - 1.123.26, 2.14.0 - 2.14.0 and 2.0.0-rc.0 - 2.13.3. | 0.0.0 - 1.123.262.0.0-rc.0 - 2.13.32.14.0 - 2.14.0 | Critical |
CVE-2026-33696 n8n is vulnerable to Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') in versions 2.14.0 - 2.14.0, 2.0.0-rc.0 - 2.13.3 and 0.0.0 - 1.123.27. | 0.0.0 - 1.123.272.0.0-rc.0 - 2.13.32.14.0 - 2.14.0 | Critical |
CVE-2026-33724 n8n is vulnerable to Authorization Bypass Through User-Controlled Key in versions 0.0.0 - 2.5.0. | 0.0.0 - 2.5.0 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
pg Version 8.17.0 | — | — |
ws Version 8.17.1 | — | — |
psl Version 1.9.0 | — | — |
xss Version 1.0.15 | — | — |
zod Version 3.25.67 | — | — |
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant