Frequency
11
occurrences
First Seen
February 4, 2026
Last Seen
July 30, 2026
Related Threat Clusters
-
n8n Sandbox Escape Vulnerability Allows OS Command Execution
On July 22, 2026, n8n released a patch for a high-severity sandbox escape vulnerability (GHSA-gv7g-jm28-cr3m) rated 8.7 on CVSS 4.0. This flaw allows authenticated users to execute operating system commands via crafted…
3 articles · Updated July 30, 2026 -
Critical RCE Vulnerability in n8n via Sandbox Escape (CVE-2026-25049)
CVE-2026-25049, published on February 4, 2026, is a critical vulnerability in n8n that allows authenticated users to execute remote system commands through a sandbox escape. This vulnerability has a CVSS score of 9.8,…
2 articles · Updated February 5, 2026 -
Critical Vulnerabilities in n8n Workflow Automation Platform Disclosed
Multiple critical vulnerabilities in the n8n open-source workflow automation platform were disclosed, allowing authenticated users to execute remote code on the server. These vulnerabilities, tracked as CVE-2026-25049,…
61 articles · Updated February 4, 2026
Recent Intelligence Reports
- Security Joes: Breaking the Sandbox Again — www.securityjoes.com · July 30, 2026
- CVE-2026-25049 (CVSS 9.3) n8n RCE Flaws Expose Automation Risks — Purple-Ops · February 6, 2026
- CVE-2026-25053 (CVSS 9.4) and Related Flaws Trigger RCE on n8n — Purple-Ops · February 6, 2026
- CVE-2026-25049 (CVSS 9.8) Critical n8n RCE via Sandbox Escape — Purple-Ops · February 5, 2026
- CVE-2026-25049: n8n Expression Sandbox Escape Enables RCE — Socradar · February 5, 2026
- Critical N8n Sandbox Escape Could Lead to Server Compromise — Ground.News · February 5, 2026
- n8n security woes roll on as new critical flaws bypass December fix — Theregister · February 5, 2026
- n8n security woes roll on as new critical flaws bypass December fix — Theregister · February 5, 2026