Vuln
·
Scope
Home
Packages
KEV
Critical
Insights
EN
中
Loading…
npm/n8n-mcp — 9 CVEs · VulnScope
pkg:npm/
n8n-mcp
9 total CVEs
CRITICAL
1
HIGH
3
MEDIUM
4
✅ Check your installed version
Check
All known vulnerabilities
CRITICAL
9.9
CVE-2026-54052
n8n-MCP: Cross-tenant access to workflow version backups in multi-tenant HTTP deployments
from 0, < 2.56.1
HIGH
8.5
CVE-2026-42449
n8n-mcp's IPv4-mapped IPv6 addresses bypass SSRF protection in validateUrlSync(), enabling full SSRF for SDK embedders
>= 2.47.4, < 2.47.14
HIGH
8.5
CVE-2026-39974
n8n-mcp has authenticated SSRF via instance-URL header in multi-tenant HTTP mode
from 0, < 2.47.4
HIGH
8.1
n8n-MCP: Multi-tenant MCP requests fall back to process-level n8n credentials when tenant headers are absent or incomplete
from 0, < 2.51.2
MEDIUM
6.5
n8n-MCP: Workflow telemetry sanitizer could retain partial values from URL-shaped node parameters
from 0, < 2.51.3
MEDIUM
5.3
n8n-MCP Logs Sensitive Request Data on Unauthorized /mcp Requests
from 0, < 2.47.11
MEDIUM
4.3
n8n-MCP: Sensitive MCP tool-call arguments logged on authenticated requests in HTTP mode
from 0, < 2.47.13
MEDIUM
4.2
n8n-MCP: Incorrect authorization can expose default-scope workflow version backups in multi-tenant HTTP mode
from 0, < 2.57.4
—
n8n-mcp webhook and API client paths has an authenticated SSRF
>= 2.18.7, < 2.50.2
CVE-2026-45707
CVE-2026-45582
CVE-2026-41495
CVE-2026-42282
CVE-2026-55608
CVE-2026-44694