CVE-2026-41495Disclosure(n8n-mcp / n8n-mcp)

LOWCVSS 5.3 · MEDIUM

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Patch n8n-mcp n8n-mcp systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

n8n-MCP is an MCP server that provides AI assistants access to n8n node documentation, properties, and operations. Prior to version 2.47.11, when n8n-mcp runs in HTTP transport mode, incoming requests to the POST /mcp endpoint had their request metadata written to server logs regardless of the authentication outcome. In deployments where logs are collected, forwarded to external systems, or viewable outside the request trust boundary (shared log storage, SIEM pipelines, support/ops access), this can result in disclosure of: bearer tokens from the Authorization header, per-tenant API keys from the, x-n8n-key header in multi-tenant setups, JSON-RPC request payloads sent to the MCP endpoint. Access control itself was not bypassed — unauthenticated requests were correctly rejected with 401 Unauthorized — but sensitive values from those rejected requests could still be persisted in logs. This issue has been patched in version 2.47.11.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-532

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • n8n-mcp

Threat summary

  • Patch or workaround signal is available
  • 2 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • 2 total mentions across 1 day

Affected systems

Vendors
Products
n8n-mcp

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-05-09: 2Patch / Workaround · 2026-05-09: 2Technical Details · 2026-05-09: 105-09
Signal classification2 categories
Disclosure
150.0%
Patch
150.0%
Referenced assets2 URLs
By indicator
Full discourse2 posts
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-41495 n8n-MCP is an MCP server that provides AI assistants access to n8n node documentation, properties, and operations. Prior to version 2.47.11, when n8n-mcp runs in HTTP… https://www.cve.org/CVERecord?id=CVE-2026-41495 ----- Traducción: CVE-2026-41495 n8n… http://infoflow.cloud`

    Post summary

    The tweet announces CVE‑2026‑41495 for n8n‑MCP, noting that version 2.47.11 resolves the issue, and links to the official CVE record.

    0000026
    76 followersView on X
  • CVE@CVEnew
    Patch

    CVE-2026-41495 n8n-MCP is an MCP server that provides AI assistants access to n8n node documentation, properties, and operations. Prior to version 2.47.11, when n8n-mcp runs in HTTP… https://www.cve.org/CVERecord?id=CVE-2026-41495

    Post summary

    CVE-2026-41495 affects n8n‑MCP before version 2.47.11, with a patch noted, but no PoC, exploit, or detailed technical information is provided.

    00000113
    57.5K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appn8n-mcpn8n-mcp---

Explore more