n8n < 1.120.4, 1.121.1, 1.122.0 contains a remote code execution caused by insufficient isolation in workflow expression evaluation, letting authenticated attackers execute arbitrary code with n8n process privileges. Exploit requires authentication.
id: CVE-2025-68613
info:
name: n8n - Remote Code Execution via Expression Injection
author: rxe
...