CVE-2026-33713Disclosure(n8n / n8n)

LOWCVSS 8.8 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch n8n n8n systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

n8n is an open source workflow automation platform. Prior to versions 2.14.1, 2.13.3, and 1.123.26, an authenticated user with permission to create or modify workflows could exploit a SQL injection vulnerability in the Data Table Get node. On default SQLite DB, single statements can be manipulated and the attack surface is practically limited. On PostgreSQL deployments, multi-statement execution is possible, enabling data modification and deletion. The issue has been fixed in n8n versions 1.123.26, 2.13.3, and 2.14.1. Users should upgrade to one of these versions or later to remediate the vulnerability. If upgrading is not immediately possible, administrators should consider the following temporary mitigations: Limit workflow creation and editing permissions to fully trusted users only, disable the Data Table node by adding `n8n-nodes-base.dataTable` to the `NODES_EXCLUDE` environment variable, and/or review existing workflows for Data Table Get nodes where `orderByColumn` is set to an expression that incorporates external or user-supplied input. These workarounds do not fully remediate the risk and should only be used as short-term mitigation measures.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-89

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • n8n

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 3 signals
  • Disclosure: 2 classified signals
  • Peaked 1d ago at 2 mentions (2026-03-25); latest day: 1
  • 3 total mentions across 2 days

Affected systems

Vendors
Products
n8n

1 version affected across 1 product

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-03-25: 2Mentions · 2026-03-27: 1Patch / Workaround · 2026-03-25: 1Patch / Workaround · 2026-03-27: 1Technical Details · 2026-03-25: 2Technical Details · 2026-03-27: 103-2503-27
Signal classification2 categories
Disclosure
266.7%
Patch
133.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-03-252
Disclosure2
2026-03-271
Patch1
Full discourse3 posts
  • CCB Alert@CCBalert
    Patch

    Warning: Critical vulnerabilities identified in #n8n. #CVE-2026-33696 #CVE-2026-33660 #CVE-2026-33713. These #RCE and #SQLi flaws allow for complete system compromise. #Patch #Patch #Patch More info: https://ccb.belgium.be/advisories/warning-critical-vulnerabilities-n8n-patch-immediately

    Post summary

    The post announces critical RCE and SQL injection vulnerabilities in n8n with CVE-2026-33696, CVE-2026-33660, and CVE-2026-33713, stressing the need for immediate patching. It references an advisory for more details.

    00001199
    7.2K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-33713 n8n is an open source workflow automation platform. Prior to versions 2.14.1, 2.13.3, and 1.123.26, an authenticated user with permission to create or modify workflow… https://www.cve.org/CVERecord?id=CVE-2026-33713

    Post summary

    The text announces CVE-2026-33713 affecting n8n, noting that prior to specific patched versions an authenticated user with workflow creation/modify permissions could exploit it.

    00000121
    56.8K followersView on X
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    Disclosure

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-33713 - n8n Vulnerable to SQL Injection in Data Table Node via orderByColumn Expression Intel Report: https://ift.tt/Gxf9XJW

    Post summary

    The post announces CVE-2026-33713, detailing a SQL Injection flaw in n8n’s Data Table Node, but provides no PoC, exploit tool, active exploitation evidence, or patch.

    0000032
    286 followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
Appn8nn8n-node.js-
Appn8nn8n2.14.0node.js-

Explore more