A AegiFlow
UNKNOWNKNOWN EXPLOITED

CVE-2025-68613

n8n Improper Control of Dynamically-Managed Code Resources Vulnerability

Published
2026-03-11
Modified
2026-07-31
Sources
cisa-kev

Summary

n8n contains an improper control of dynamically managed code resources vulnerability in its workflow expression evaluation system that allows for remote code execution.

References

Includes data from the CISA Known Exploited Vulnerabilities catalog.

CVE® is a registered trademark of The MITRE Corporation. CVE content reproduced under the CVE Terms of Use; copyright designation © MITRE.