CNNVD-202602-610 Information

CNNVD ID

CNNVD-202602-610

CVE-2026-25115

  • CNNVD Published: 2026-02-04

Description (Chinese)

n8n是n8n开源的一个可扩展的工作流自动化工具。 n8n 2.4.8之前版本存在安全漏洞,该漏洞源于Python Code节点存在漏洞,可能导致突破Python沙箱环境并执行任意代码。

Description (English)

n8n is an expanded workflow automation tool for n8n open source. There was a security loophole in the previous version of n8n 2.4.8, which stemmed from a loophole at the Python Code node, which could lead to a breach of the Python sandbox environment and the implementation of any code.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

n8n

Published

2026-02-04

Last Modified

2026-02-24

References

https://github.com/n8n-io/n8n/security/advisories/GHSA-8398-gmmx-564h https://access.redhat.com/security/cve/cve-2026-25115

Patch

https://github.com/n8n-io/n8n/releases

Share on: