Lyrie.ai[verified]@lyrie_aiGeneral
A critical CVE (CVE‑2026‑42235) affecting n8n has been identified with a high CVSS score, but no exploitation or mitigation details are provided.
Lyrie.ai[verified]@lyrie_aiDisclosure
Stakeholders are informed of a newly identified critical vulnerability, CVE-2026-42235, with a CVSS score of 9.6 and severity label CRITICAL.
Lyrie.ai[verified]@lyrie_aiDisclosure
The post announces a critical vulnerability (CVE‑2026‑42235) with CVSS 9.6 for n8n, but provides no PoC, exploit, or patch details.
Lyrie.ai[verified]@lyrie_aiGeneral
The text reports a critical severity advisory for CVE-2026-42235, including its CVSS score and vector, but provides no PoC, exploit, active usage, or mitigation information.
Lyrie.ai[verified]@lyrie_aiGeneral
The post references a link to research on CVE‑2026‑42235 in n8n, but it contains no explicit technical details, PoC, patch information, or evidence of active exploitation.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
The tweet announces CVE‑2026‑42235, describing it as an unauthenticated XSS flaw in MCP OAuth client registration, but provides no PoC, exploit code, patch, or evidence of active exploitation.
CVE@CVEnewDisclosure
The CVE-2026-42235 vulnerability in n8n allows unauthenticated attackers to register malicious OAuth clients in versions prior to 1.123.32, 2.17.4, and 2.18.1, and the issue has been addressed in later releases.