CVE-2026-0863Disclosure(n8n / n8n)

MEDIUMCVSS 9.9 · CRITICAL

Exploit discussion active in current signal (2 latest mentions)

Immediate actions

  • Patch n8n n8n systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

Using string formatting and exception handling, an attacker may bypass n8n's python-task-executor sandbox restrictions and run arbitrary unrestricted Python code in the underlying operating system. The vulnerability can be exploited via the Code block by an authenticated user with basic permissions and can lead to a full n8n instance takeover on instances operating under "Internal" execution mode. If the instance is operating under the "External" execution mode (ex. n8n's official Docker image) - arbitrary code execution occurs inside a Sidecar container and not the main node, which significantly reduces the vulnerability impact.

4.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-95CWE-94

Priority

MEDIUM

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • n8n

Threat summary

  • Public PoC and exploit tooling are both present
  • Patch or workaround signal is available
  • 25 mentions across 5 observed days
  • Momentum state: stable

What's happening

  • Exploit tool or code specified in 1 signal
  • PoC mentioned or linked in 2 signals
  • Patch or workaround mentioned in 12 signals
  • Technical details provided in 18 signals
  • Disclosure: 12 classified signals
  • Peaked 3d ago at 10 mentions (2026-01-29); latest day: 2
  • 25 total mentions across 5 days

Affected systems

Vendors
Products
n8n

Deep dive

Activity timeline25 mentions / 5d
035810Mentions · 2026-01-28: 4Mentions · 2026-01-29: 10Mentions · 2026-01-30: 7Mentions · 2026-02-02: 2Mentions · 2026-02-03: 2PoC Mentioned / Linked · 2026-01-28: 1PoC Mentioned / Linked · 2026-01-29: 1Exploit Tool / Code · 2026-01-28: 1Patch / Workaround · 2026-01-28: 2Patch / Workaround · 2026-01-29: 8Patch / Workaround · 2026-01-30: 2Technical Details · 2026-01-28: 3Technical Details · 2026-01-29: 7Technical Details · 2026-01-30: 4Technical Details · 2026-02-02: 2Technical Details · 2026-02-03: 201-2801-2901-3002-0202-03
Signal classification3 categories
Disclosure
1248.0%
Patch
1144.0%
PoC
28.0%
Referenced assets16 URLs
Classification over time
DateTotalLabels
2026-01-284
Patch2PoC2
2026-01-2910
Disclosure3Patch7
2026-01-307
Disclosure5Patch2
2026-02-022
Disclosure2
2026-02-032
Disclosure2
Full discourse20 posts
  • Rishi@rxerium
    PoC

    🚨 2 new vulnerability scripts created for the n8n vulnerabilities disclosed today: CVE-2026-1470: https://github.com/rxerium/rxerium-templates/blob/main/2026/CVE-2026-1470.yaml CVE-2026-0863: https://github.com/rxerium/rxerium-templates/blob/main/2026/CVE-2026-0863.yaml Happy hunting. https://t.co/v8PXwBjKQ8

    Post summary

    The tweet shares GitHub links to YAML-based vulnerability scripts for two newly disclosed n8n CVEs, enabling users to test or exploit CVE‑2026‑1470 and CVE‑2026‑0863.

    473142121126.1K
    3.1K followersView on X
  • blueblue@piedpiper1616
    Disclosure

    Achieving Remote Code Execution on n8n Via Sandbox Escape - CVE-2026-1470 & CVE-2026-0863 - JFrog Security Research - https://research.jfrog.com/post/achieving-remote-code-execution-on-n8n-via-sandbox-escape/

    Post summary

    Jfrog Security Research reports that CVE‑2026‑1470 and CVE‑2026‑0863 allow remote code execution via a sandbox escape in n8n, confirming the vulnerability type and presenting a PoC, but no evidence of active exploitation or patches is provided.

    04021122.0K
    5.5K followersView on X
  • IT-Connect.fr@ITConnect_fr
    Patch

    n8n - CVE-2026-1470 et CVE-2026-0863 : deux nouvelles failles patchées, comment se protéger ? 👇 Les détails dans l'article de Florian : - https://www.it-connect.fr/n8n-cve-2026-1470-et-cve-2026-0863-patchs-de-securite/ #n8n #infosec #cybersecurite https://t.co/NsBGGCCWZs

    Post summary

    The tweet announces that two new CVEs affecting n8n have been patched and directs readers to an article for protection guidance.

    03041538
    10.9K followersView on X
  • ねこさん⚡(ΦωΦ)@catnap707
    Disclosure

    n8nでリモートコード実行が可能になる脆弱性(CVE-2026-1470,CVE-2026-0863)|セキュリティ対策Lab https://rocket-boys.co.jp/security-measures-lab/remote-code-execution-vulnerabilities-in-n8n-cve-2026-1470-and-cve-2026-0863/ "業務自動化基盤は認証情報や社内APIへのアクセス権を内包しやすく、侵害されると横展開が起きやすいため、情報システム部門としては優先度高く扱うべき類型です"

    Post summary

    The post announces RCE vulnerabilities (CVE‑2026‑1470, CVE‑2026‑0863) in n8n, noting the risk of remote code execution but providing no PoC, exploit, or patch information.

    10101463
    3.4K followersView on X
  • ThreatSynop@ThreatSynop
    Patch

    🚨 Critical n8n Flaws Let Attackers Bypass Sandbox and Hijack AI Automation Workflows JFrog disclosed two n8n vulnerabilities (CVE-2026-1470, CVSS 9.9; CVE-2026-0863, CVSS 8.5) that can bypass sandbox controls and enable full takeover/RCE on vulnerable cloud or self-hosted deployments, exposing stored credentials, API keys, and connected systems. Patch/upgrade affected versions prior to 1.123.17/2.4.5/2.5.1 (CVE-2026-1470) and 1.123.14/2.3.5/2.4.2 (CVE-2026-0863). 🎯 Target: Global/Enterprises using n8n (AI workflow automation) #️⃣ Category: #Vulnerability #BlueTeam 🔗 URL: https://www.darkreading.com/vulnerabilities-threats/critical-flaws-n8n-compromise-customer-security

    Post summary

    Two critical n8n vulnerabilities (CVE-2026-1470 and CVE-2026-0863) allow sandbox bypass and RCE, and the article provides patch/upgrade guidance for affected versions.

    1002069
    196 followersView on X
  • Security Boulevard@securityblvd
    Disclosure

    JFrog security researchers have exposed two critical vulnerabilities (CVE-2026-1470, rated 9.9; and CVE-2026-0863, rated 8.5) in the n8n workflow automation platform. Here's what you need to know 👉 https://buff.ly/EwBBrj8 #Vulnerability #CVE #Cybersecurity #JFrog #n8n

    Post summary

    JFrog security researchers disclosed two high‑CVSS critical vulnerabilities (CVE‑2026‑1470 and CVE‑2026‑0863) affecting n8n, but no PoC, exploit, or patch details were provided.

    01010101
    7.0K followersView on X
  • Compunet@CompunetChile
    Patch

    🚨 Alerta de Ciberseguridad | CompuNet Nuestro Blueteam SOC detectó vulnerabilidades críticas en n8n (CVE-2026-1470 / CVE-2026-0863) que permiten ejecución de código y compromiso total de instancias. 👉 Actualiza y mitiga de inmediato. #Ciberseguridad #AlertaSeguridad #SOC https://t.co/iWiwy4Kw96

    Post summary

    The tweet alerts users to critical code‑execution vulnerabilities (CVE-2026-1470, CVE-2026-0863) in n8n and urges immediate patching and mitigation.

    0101060
    53 followersView on X
  • SOCRadar®@socradar
    Patch

    🚨 Two severe sandbox escape flaws in #n8n automation platform (CVE-2026-1470 & CVE-2026-0863) enable authenticated users to execute arbitrary code. 🔹 Affects JS & Python execution 🔹 #RCE risk on host 🔹 Patches available 🔍: https://socradar.io/blog/cve-2026-1470-0863-sandbox-n8n-rce/

    Post summary

    Two sandbox escape flaws in n8n (CVE-2026-1470 and CVE-2026-0863) let authenticated users execute arbitrary code on the host; patches are available to mitigate the RCE risk.

    01010176
    5.6K followersView on X
  • Autumn Good@autumn_good_35
    PoC

    『In both cases, exploitation resulted in remote code execution (RCE) by abusing gaps in the AST sanitization logic.』 Achieving Remote Code Execution on n8n Via Sandbox Escape - CVE-2026-1470 & CVE-2026-0863 https://research.jfrog.com/post/achieving-remote-code-execution-on-n8n-via-sandbox-escape/

    Post summary

    The article indicates that CVE-2026-1470 and CVE-2026-0863 in n8n enable remote code execution by exploiting gaps in AST sanitization logic, demonstrating a successful proof‑of‑concept exploit; no patches or active exploitation are mentioned.

    00020554
    6.7K followersView on X
  • セキュリティ対策Lab@securityLab_jp
    Disclosure

    n8nでリモートコード実行が可能になる脆弱性(CVE-2026-1470,CVE-2026-0863) https://rocket-boys.co.jp/security-measures-lab/remote-code-execution-vulnerabilities-in-n8n-cve-2026-1470-and-cve-2026-0863/ #セキュリティ対策Lab #セキュリティ #Security #CybersecurityNews

    Post summary

    The article announces remote code execution vulnerabilities in n8n (CVE-2026-1470, CVE-2026-0863) without providing PoC, exploit code, or patch details.

    00010102
    318 followersView on X
  • 𓊈𒆜🅲🆁🅸🆂🆃🅸🅰🅽 𒆜𓊉@Cris7ianJCC
    Patch

    Actualizaciones recomendadas: - Para corregir CVE-2026-1470, actualiza a las versiones 1.123.17, 2.4.5 o 2.5.1. - Para CVE-2026-0863, se sugieren las versiones 1.123.14, 2.3.5 o 2.4.2.

    Post summary

    The advisory recommends updating to specific patch versions to remediate CVE‑2026‑1470 and CVE‑2026‑0863, with no mention of PoCs, exploit tools, or active exploitation.

    1000039
    664 followersView on X
  • 𓊈𒆜🅲🆁🅸🆂🆃🅸🅰🅽 𒆜𓊉@Cris7ianJCC
    Disclosure

    2.- CVE-2026-0863 (Puntuación CVSS: 8.5): Tipo: Inyección eval. Descripción: Permite la ejecución de código Python no restringido debido a un bypass en las medidas de sandbox del ejecutor de tareas de Python.

    Post summary

    CVE-2026-0863 is a high‑severity (CVSS 8.5) Python eval injection flaw that permits unrestricted code execution by bypassing sandbox controls.

    1000045
    664 followersView on X
  • ProbablyPwned@probablypwned
    Disclosure

    JFrog discloses CVE-2026-1470 and CVE-2026-0863 in its workflow automation platform, both enabling authenticated remote code execution (RCE). Critical security vulnerability highlights risks in automation systems. Read more: https://www.probablypwned.com/article/n8n-sandbox-escape-cve-2026-1470-cve-2026-0863-rce

    Post summary

    JFrog discloses CVE-2026-1470 and CVE-2026-0863 as authenticated remote code execution vulnerabilities in its workflow automation platform. No exploitation details or patches are mentioned.

    1000055
    16 followersView on X
  • GoPlus Security 🚦@GoPlusSecurity
    Disclosure

    (3/6) 🔥 n8n workflow platform hit with two critical sandbox escape flaws (CVE-2026-1470, CVE-2026-0863). Attackers with workflow edit rights can achieve Remote Code Execution on the host node. Self-hosted users: update immediately. 🔗 Full analysis: https://research.jfrog.com/post/achieving-remote-code-execution-on-n8n-via-sandbox-escape/

    Post summary

    Two critical sandbox escape vulnerabilities (CVE‑2026‑1470, CVE‑2026‑0863) in n8n grant RCE to users with workflow edit rights; self‑hosted users are urged to update immediately.

    10000110
    457.2K followersView on X
  • サイバーセキュリティニュース-JP@cybersecnews_jp
    Disclosure

    n8nでリモートコード実行が可能になる脆弱性(CVE-2026-1470,CVE-2026-0863) https://rocket-boys.co.jp/security-measures-lab/remote-code-execution-vulnerabilities-in-n8n-cve-2026-1470-and-cve-2026-0863/

    Post summary

    An article announces two CVEs in n8n that enable remote code execution, but no PoC, exploit code, or mitigation details are provided.

    0000043
    45 followersView on X
  • Guardian360@Guardian360nl
    Disclosure

    Researchers at JFrog who discovered the vulnerabilities assigned a critical severity score of 9.9 for one of them (CVE-2026-1470), and a high severity score of 8.5 to the second (CVE-2026-0863). https://www.darkreading.com/vulnerabilities-threats/critical-flaws-n8n-compromise-customer-security

    Post summary

    Researchers from JFrog announced two CVEs, assigning CVE-2026-1470 a critical severity of 9.9 and CVE-2026-0863 a high severity of 8.5, as reported in a DarkReading article.

    0000048
    204 followersView on X
  • Cybersecurity News Everyday@TweetThreatNews
    Patch

    Two critical vulnerabilities in n8n (CVE-2026-1470 & CVE-2026-0863) enable remote code execution in JavaScript and Python flows, allowing full instance takeover. Fixed in versions 1.123.17+, 2.4.5+, 2.5.1+ #n8nSecurity #RemoteCodeExec #JFrog https://ift.tt/1gvt4AQ

    Post summary

    The notice reports two critical RCE CVEs in n8n enabling full instance takeover and lists the versions where the vulnerabilities have been fixed.

    00000132
    3.6K followersView on X
  • twelvesec@twelvesec
    Disclosure

    Two #vulnerabilities (CVE-2026-1470 & CVE-2026-0863) in the n8n workflow automation platform could allow attackers to fully compromise affected instances, access sensitive data, and execute arbitrary code on the underlying host. #CyberSecurity #InfoSec https://ift.tt/E4IdVQj https://t.co/27lZ7frNCo

    Post summary

    The tweet announces that two CVEs in the n8n automation platform enable full compromise, data access, and remote code execution.

    0000080
    1.5K followersView on X
  • ‘BugBounty Writeups’@bbwriteups
    Disclosure

    "n8n RCE vulnerabilities: CVE-2026–1470 and CVE-2026–0863 expose automation workflows to takeover" by Germano Costi #BugBounty #Cybersecurity #Hacking #InfoSec https://medium.com/@costigermano/n8n-rce-vulnerabilities-cve-2026-1470-and-cve-2026-0863-expose-automation-workflows-to-takeover-743ef19470c8

    Post summary

    The post announces the discovery of two RCE vulnerabilities (CVE‑2026‑1470 and CVE‑2026‑0863) in n8n that could allow attackers to take over automation workflows.

    0000087
    479 followersView on X
  • ThreatCluster@threatcluster
    Disclosure

    Critical sandbox escape flaws in vm2 (CVE-2026-22709) and n8n (CVE-2026-1470, CVE-2026-0863, CVSS up to 9.9) enable JavaScript sandbox bypass, exposing Node.js environments to severe risk. #Vulnerability https://threatcluster.io/cluster/critical-sandbox-escape-vulnerabilities-discovered-in-vm2-an-e05062a7

    Post summary

    The post announces critical sandbox escape vulnerabilities in the vm2 and n8n Node.js modules, exposing environments to severe risk and highlighting their high CVSS scores.

    0000082
    80 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appn8nn8n-node.js-

Explore more