Arbitrary Code Execution Vulnerability in n8n Git Node
CVE-2026-25053
9.4CRITICAL
What is CVE-2026-25053?
n8n, an open-source workflow automation platform, has a vulnerability within its Git node that permits authenticated users to execute arbitrary system commands or access sensitive files on the host. This issue poses a significant security risk as it allows users with permission to create or modify workflows the potential to exploit system capabilities. The vulnerability is resolved in n8n versions 1.123.10 and 2.5.0, emphasizing the importance of keeping software up to date to mitigate security risks.
Affected Version(s)
n8n < 1.123.10 < 1.123.10
n8n < 2.5.0 < 2.5.0
