CVE-2026-27577
CVSS 9.9 CRITICAL: n8n is an open source workflow automation platform. EPSS 10% (95th percentile).
Vulnerabilities · 187 days ago
Two critical vulnerabilities in the n8n workflow platform allow unauthenticated attackers to run commands and escape the sandbox. Both cloud and self-hosted instances are affected, and attackers could extract all credentials stored in n8n’s database, exposing connected systems.
CVSS 9.9 CRITICAL: n8n is an open source workflow automation platform. EPSS 10% (95th percentile).
CVSS 9 CRITICAL: n8n is an open source workflow automation platform. EPSS 1% (67th percentile).
3 sources covering this story
Critical Zero-Click Flaw in n8n Allows Full Server Compromise
The critical vulnerability affecting both cloud and self-hosted n8n instances requires no authentication or even n8n account to be exploited
Critical N8n Vulnerabilities Allowed Server Takeover
The bugs allowed unauthenticated attackers to execute arbitrary code, steal credentials, and take over servers.
Critical n8n Flaws Allow Remote Code Execution and Exposure of Stored Credentials
Two critical n8n flaws (CVSS 9.4, 9.5) enable RCE via expression sandbox escape and public forms, risking credential exposure.
Part of the PlainSec briefing for 2026-03-13