Appsecure logo

CVE-2026-25115: Critical Vulnerability in n8n

A critical vulnerability in n8n prior to version 2.4.8 allows authenticated users to escape the Python sandbox and execute arbitrary code. Immediate patching is essential to mitigate risks.

CRITICALCVSS 9.4 · Published February 4, 2026

Not a customer? See how AppSecure simulates real world attacks to protect your infrastructure.

Speak to Experts

CVE-2026-25115 is a critical security vulnerability affecting n8n, an open source workflow automation platform. This vulnerability allows authenticated users to break out of the Python Code node's sandbox environment, potentially executing code outside the intended security boundaries. The CVSS score for this vulnerability is 9.4, indicating a critical severity level that necessitates immediate attention from organizations using n8n. The urgency for defenders is underscored by the possibility of unauthorized code execution, which can lead to severe implications for data confidentiality, integrity, and availability.

Organizations should prioritize patching immediately, as this vulnerability has been patched in version 2.4.8 of n8n. Failure to address this vulnerability could expose systems to potential exploitation by authenticated users, thereby compromising the security of the automation workflows.

The vulnerability was published on February 4, 2026, and has been analyzed for its impact. The exploitability of this vulnerability is rated as critical, emphasizing the need for swift remediation.

In addition, the EPSS score for this vulnerability indicates a low probability of exploitation at this time. However, given the critical nature of the vulnerability, organizations should not rely solely on this metric and should take immediate action to implement the available patches.

For further insights, organizations may refer to the vendor advisory available on GitHub.

Disclaimer: This content was generated using AI. While we strive for accuracy, please verify critical information with official sources.

Latest CVEs. Recently published vulnerabilities from the NVD database.

View all vulnerabilities
CVE IDSeverity
CVE-2025-65418HIGH
CVE-2025-65417MEDIUM
CVE-2025-65416MEDIUM
CVE-2025-65415MEDIUM
CVE-2025-61314HIGH

Protect Your Business with Hacker-Focused Approach.