N8n is a technology platform tracked across 25 threat clusters and 65 intelligence report mentions on ThreatCluster. First observed December 23, 2025; most recent activity July 26, 2026.
A critical vulnerability in the n8n workflow automation platform, tracked as CVE-2025-68668, allows authenticated users to execute arbitrary system commands on affected servers. With a CVSS score of 9.9, this flaw…
A critical remote code execution vulnerability (CVE-2025-68613) in the n8n workflow automation platform has been disclosed, potentially impacting over 100,000 servers, primarily in the United States. The flaw, which has…
Security researchers have released proof-of-concept exploit code for a critical remote code execution vulnerability affecting n8n. This vulnerability poses significant risks to users of the platform, enabling potential…
In 2026, Iranian APT groups, notably Cavern Manticore and OilRig, have intensified cyber operations against Israeli organizations, primarily in the IT and government sectors. Cavern Manticore employs a modular…
On April 8, 2026, a critical pre-authenticated remote code execution vulnerability (CVE-2026-39987) was disclosed in Marimo, an open-source Python notebook platform. The flaw allows unauthenticated attackers to gain a…
A moderate-scored IDOR vulnerability (CVE-2026-55255) in Langflow has been actively exploited since June 25, 2026, allowing attackers to access and execute flows belonging to other users. This exploit leverages a…
Recent reports indicate that a vulnerability in N8n has been actively exploited, posing significant risks to users. Additionally, researchers from Qualys have identified nine vulnerabilities in the Linux AppArmor, which…
n8n has issued a critical security alert regarding a remote code execution (RCE) vulnerability identified as CVE-2026-21877. Users are urged to update to version 1.121.3 to mitigate potential attacks. This vulnerability…
A critical remote code execution vulnerability, tracked as CVE-2025-68613, has been identified in the n8n automation platform, affecting over 103,000 instances globally. The flaw allows authenticated attackers to…
Zafran Labs identified four vulnerabilities in Dify, an open-source AI platform used by over one million applications, including critical flaws allowing cross-tenant data leakage. Two vulnerabilities, CVE-2026-41947 and…