Sandbox Escape Vulnerability in n8n Workflow Automation Platform
CVE-2026-92587

5.3MEDIUM

Key Information:

Vendor

N8n-io

Status
Vendor
CVE Published:
16 September 2026

What is CVE-2026-92587?

The n8n workflow automation platform has a vulnerability in its Git node that allows an authenticated user to bypass file access checks by using a relative remote URL. In versions prior to 1.123.76, 2.37.7, and 2.38.2, the Git node improperly validated the remote URL against the configured repositoryPath. This oversight permitted the git command to resolve the URL outside the intended sandbox directory, enabling unauthorized access to repository contents outside the designated path. Users should ensure they are running the corrected versions to mitigate this risk, and can disable the Git node as a temporary workaround by configuring NODES_EXCLUDE accordingly.

Affected Version(s)

n8n 0 < 1.123.76

n8n 0 < 2.38.2

n8n 0 < 2.37.7

References

CVSS V4

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Masofgon
.