Privilege Escalation and Remote Code Execution in n8n by n8n-io
CVE-2026-65595
8.9HIGH
What is CVE-2026-65595?
The n8n platform, prior to versions 2.30.1 and 2.29.8, is susceptible to a severe vulnerability where all Public API key scopes are assigned to JWTs issued via the Token Exchange module, irrespective of the user's role. This flaw enables a low-privileged user, who can acquire a valid external JWT from a designated issuer, to utilize the accessed token for executing administrator-specific Public API actions. Such actions may include role escalation, user management tasks, and, with unverified Community Package installations, the potential for remote code execution. This issue emphasizes the importance of stringent access control measures and secure configuration practices.
Affected Version(s)
n8n 0 < 2.30.1
n8n 0 < 2.29.8
n8n 2.30.1
