n8n Improper Control of Dynamically-Managed Code Resources Vulnerability
Critical Listed in CISA KEV
Summary
n8n contains an improper control of dynamically managed code resources vulnerability in its workflow expression evaluation system that allows for remote code execution.
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- n8n:n8n
Sources
- CISA KEV DATABASE
Original Links
- https://nvd.nist.gov/vuln/detail/CVE-2025-68613 advisory
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog kev
- https://github.com/n8n-io/n8n/security/advisories/GHSA-v98v-ff95-f3cp reference
Timeline
- kev_added CISA KEV
- kev_ingest CISA KEV