
Critical Zero-Click Vulnerability in n8n Workflow Automation Tool
cybersecurityvulnerabilityn8nworkflowautomationzeroclickservercompromiseunauthorizedaccessinfosecuritymagazine
A critical zero-click vulnerability affects both cloud and self-hosted instances of n8n, a workflow automation tool, allowing full server compromise without requiring authentication or an n8n account. The flaw can be exploited remotely, posing a severe risk to exposed deployments. No specific CVE ID, technical details, or patch release date were provided in the notice. The impact includes unauthorized access and potential takeover of affected servers. The vulnerability was disclosed by Infosecurity Magazine, though no discovery timeline or affected versions were specified.