CISA ha ordinato alle agenzie federali di patchare una RCE in n8n (CVE-2025-68613). La vulnerabilità è stata sfruttata in attacchi attivi. Un attaccante autenticato può eseguire codice con i privilegi del processo n8n e compromettere API keys, database credentials, OAuth tokens e segreti CI/CD.
Part of the PlainSec briefing for 2026-03-13
Every edition of this story: CISA Ordina Patch per RCE in n8n