Skip to content
Critical n8n Vulnerability Allows Command Execution by Authenticated Users

Critical n8n Vulnerability Allows Command Execution by Authenticated Users

First seen 6 Jan 2026, 16:41 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •March 12, 2026 at 13:27 UTC

A critical vulnerability in n8n, an open-source workflow automation platform, has been identified, allowing authenticated attackers to execute arbitrary commands on host systems. This vulnerability, tracked as CVE-2025-68668, has a CVSS score of 9.9 out of 10, indicating its severe impact. The issue is related to a sandbox-bypass flaw in n8n's Python environment.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 212d ago How this analysis works

More articles in this cluster (3)

Following this threat?

Track CVE-2025-68668 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed