All 100 CVE vulnerabilities found in n8n, with AI-generated Chinese analysis, references, and POCs.
This page documents known security weaknesses affecting the open-source workflow automation tool n8n. It aggregates data related to various Common Weakness Enumeration (CWE) categories, including injection flaws, cross-site scripting, and insecure direct object references that may impact the integrity or confidentiality of automated workflows. The collection covers vulnerabilities identified and reported between early 2021 and late 2024, capturing the historical security posture of the product as it evolved through multiple major releases. By consolidating these records, the page serves as a centralized repository for tracking the specific advisories issued by the n8n development team and the community. Users can utilize this resource to understand the nature and severity of weakness classes inherent to the software’s architecture or to look up the complete vulnerability history of specific n8n versions. This enables security professionals and system administrators to assess risk exposure, verify patch applicability, and make informed decisions about upgrading or mitigating identified threats without relying on fragmented sources. The information is intended to provide clarity on past incidents and support ongoing security monitoring efforts for organizations deploying n8n in production environments.
Vendor: n8n-io
All 100 known CVE vulnerabilities affecting n8n with full Chinese analysis, references, and POCs where available.