SEPTEMBER 11, 2026
Live Feed
Back to database
Case File

CVE-2026-56349

MEDIUM · CVSS 6.3 EPSS 0.34% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-07-15 · Last synced 2026-08-14

CyberRota Analysis

AI-Generated

The vulnerability in n8n prior to version 2.10.0 affects the Guardrail node, allowing attackers to bypass default guardrail instructions through crafted malicious inputs. This can lead to compromised workflow integrity, potentially enabling unauthorized actions within automated processes. Organizations using n8n for workflow automation should prioritize upgrading to mitigate this risk.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

GitHub PoC Links

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-56349
Severity
MEDIUM
CVSS
6.3
EPSS
0.34%

Original NVD Description

n8n before version 2.10.0 contains an input validation vulnerability in the Guardrail node that allows attackers to bypass default guardrail instructions. End users can craft malicious inputs to circumvent guardrail protections and compromise workflow integrity.