CVE-2026-21858

n8n Vulnerable to Unauthenticated File Access via Improper Webhook Request Handling

Basic Information

CVE State
PUBLISHED
Reserved Date
January 05, 2026
Published Date
January 07, 2026
Last Updated
January 12, 2026
Vendor
n8n-io
Product
n8n
Description
n8n is an open source workflow automation platform. Versions starting with 1.65.0 and below 1.121.0 enable an attacker to access files on the underlying server through execution of certain form-based workflows. A vulnerable workflow could grant access to an unauthenticated remote attacker, resulting in exposure of sensitive information stored on the system and may enable further compromise depending on deployment configuration and workflow usage. This issue is fixed in version 1.121.0.
Tags
nuclei_scanner

CVSS Scores

CVSS v3.1

10.0 - CRITICAL

Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N

SSVC Information

Exploitation
none
Automatable
Yes
Technical Impact
total

Exploit Status

Exploited in the Wild
Yes (2026-02-07 00:00:00 UTC) Source
Proof of Concept Available
Yes (added 2026-01-20 11:50:32 UTC) Source

Known Exploited Vulnerability Information

Source Added Date
The Shadowserver (via CIRCL) 2026-02-07 00:00:00 UTC

Scanner Integrations

Potential Proof of Concepts

Warning: These PoCs have not been tested and could contain malware. Use at your own risk.

bgarz929/Ashwesker-CVE-2026-21858

Type: github • Created: 2026-01-28 08:17:42 UTC • Stars: 0

CVE-2026-21858

SystemVll/CVE-2026-21858

Type: github • Created: 2026-01-20 15:59:48 UTC • Stars: 3

Proof of Concept: CVE-2026-21858 is vulnerability on n8n where unauthenticated remote attackers can access sensitive files.

sec-dojo-com/CVE-2026-21858

Type: github • Created: 2026-01-20 11:50:32 UTC • Stars: 1

sastraadiwiguna-purpleeliteteaming/SASTRA-ADI-WIGUNA-CVE-2026-21858-Holistic-Audit

Type: github • Created: 2026-01-17 04:57:53 UTC • Stars: 0

SASTRA-ADI-WIGUNA-CVE-2026-21858-Holistic-Audit

Timeline

  • CVE ID Reserved

  • CVE Published to Public

  • Proof of Concept Exploit Available

  • Added to KEVIntel

  • Detected by Nuclei