Package impact
NPM / n8n
| CVE | Severity | CVSS | Risk | Flags | OS | Vendor | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2026-42228 | medium | 6.5 | 6.5 | 25d ago | n8n Vulnerable to Hijacking of Unauthenticated Chat Execution | |||
| CVE-2026-42227 | medium | 6.5 | 6.5 | 25d ago | n8n has Public API Variables IDOR that Allows Cross-Project Secret Disclosure | |||
| CVE-2026-42230 | medium | 6.1 | 6.1 | 25d ago | n8n has Open Redirect in MCP OAuth Consent Flow |