Package impact
npm / n8n
| CVE | Severity | CVSS | Risk | Published | Description | Impact |
|---|---|---|---|---|---|---|
| CVE-2026-42228 | medium | 6.5 | 6.5 | 23d ago | n8n Vulnerable to Hijacking of Unauthenticated Chat Execution | |
| CVE-2026-42227 | medium | 6.5 | 6.5 | 23d ago | n8n has Public API Variables IDOR that Allows Cross-Project Secret Disclosure | |
| CVE-2026-42230 | medium | 6.1 | 6.1 | 23d ago | n8n has Open Redirect in MCP OAuth Consent Flow |