Vulnerabilities & Exploits · Web App Attack

CISA Orders Federal Agencies to Patch n8n RCE

CISA ordered federal agencies to patch an actively exploited remote code execution flaw in n8n (CVE-2025-68613). The flaw lets authenticated attackers run code as the n8n process and access stored API keys, tokens, and credentials.

2 sources · Mar 12

CVE-2025-68613

NVD KEV

Known exploited · CISA KEV

CVSS 9.9 CRITICAL: n8n is an open source workflow automation platform. EPSS 99% (100th percentile).

CISA federal remediation date Mar 25

Timeline

Sources

Part of the PlainSec briefing for 2026-03-23

Every edition of this story: CISA Orders Federal Agencies to Patch n8n RCE

More from today