SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-85166

MEDIUM · CVSS 6.5 EPSS 0.21% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-03 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

Versions of n8n prior to 2.35.4 and 2.36.x before 2.36.2 are vulnerable due to inadequate validation of credential references in inline workflow JSON, allowing unauthorized users to persist nodes that reference credentials they do not own. This flaw can lead to credential exfiltration when workflows are executed under identities that possess the compromised credentials, potentially exposing sensitive information to attackers. Organizations using n8n, particularly those with shared workflow editing capabilities, should prioritize patching to mitigate this high-severity risk.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

GitHub PoC Links

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-85166
Severity
MEDIUM
CVSS
6.5
EPSS
0.21%

Original NVD Description

n8n before 2.35.4 and 2.36.x before 2.36.2 does not validate credential references in the inline workflow JSON of nodes that execute an inline sub-workflow (e.g., the Workflow Tool node). A shared-workflow editor, or any user creating/updating a workflow via the REST API, Public API, or MCP, can persist a node referencing a credential they do not own. When the workflow is later executed under an identity that holds the credential, the inline sub-workflow resolves the secret and can send it to an attacker-controlled endpoint, resulting in credential exfiltration.

Related CVEs

Other vulnerabilities affecting the same vendor(s)