CNNVD-202507-289 Information

CNNVD ID

CNNVD-202507-289

CVE-2025-49595

  • CNNVD Published: 2025-07-03

Description (Chinese)

n8n是n8n开源的一个可扩展的工作流自动化工具。 n8n 1.99.0之前版本存在资源管理错误漏洞,该漏洞源于处理空文件系统URI时存在拒绝服务漏洞,可能导致服务不可用。

Description (English)

n8n is an expanded workflow automation tool for n8n open source. n8n 1.99.0 has a resource management error gap, which stems from the denial of service when processing the empty file system URL, which may result in the service not being available.

Hazard Level

High

Vulnerability Type

资源管理错误

Affected Vendor

n8n

Published

2025-07-03

Last Modified

2026-02-24

References

https://github.com/n8n-io/n8n/commit/43c52a8b4f844e91b02e3cc9df92826a2d7b6052 https://github.com/n8n-io/n8n/pull/16229 https://github.com/n8n-io/n8n/security/advisories/GHSA-pr9r-gxgp-9rm8

Patch

https://github.com/n8n-io/n8n/releases

Share on: