The Hacker Newspublished Jul 27, 2026TLP AMBEREvidence brief ready
n8n Sandbox Escape Lets Workflow Editors Run OS Commands as the n8n Process
Brief status
Evidence brief ready
Evidence records
1
Structured pivots
6
Publisher text
Withheld by policy
Forensia structured brief
Built from approved structured facts. Every conclusion below carries evidence references.
Evidence brief ready
1
Finding
indicator:403602:description
What happened
NVD describes CVE-2026-27577 as: n8n is an open source workflow automation platform. Prior to versions 2.10.1, 2.9.3, and 1.123.22, additional exploits in the expression evaluation of n8n have been identified and patched following CVE-2025-68613. An authenticated user with permission to create or modify workflows could abuse crafted expressions in workflow parameters to trigger unintended system command execution on the host running n8n. The issues have been fixed in n8n versions 2.10.1, 2.9.3, and 1.123.22. Users should upgrade to one of these versions or later to remediate all known vulnerabilities. If upgrading is not immediately possible, administrators should consider the following temporary mitigations. Limit workflow creation and editing permissions to fully trusted users only, and/or deploy n8n in a hardened environment with restricted operating system privileges and network access to reduce the impact of potential exploitation. These workarounds do not fully remediate the risk and should only be used as short-term mitigation measures.
Scroll this evidence note to continue
2
Impact
indicator:403602:cvss
Why it matters
NVD assigns CVE-2026-27577 a CVSS base score of 9.9.
3
Scope
indicator:403602:products
Affected systems and entities
The structured record identifies affected product references for CVE-2026-27577: cpe:2.3:a:n8n:n8n:*:*:*:*:*:node.js:*:*, cpe:2.3:a:n8n:n8n:*:*:*:*:*:node.js:*:*, cpe:2.3:a:n8n:n8n:*:*:*:*:*:node.js:*:*.
Check whether the affected product and version are present in your environment, then follow the vendor or NVD remediation guidance for CVE-2026-27577.
publisher text · intentionally withheld
The original article remains with its publisher
This source is currently approved for metadata display only. The structured panel above shows only facts that Forensia can lawfully support. Its status will advance automatically when approved evidence becomes available.
Grouping means the records share event anchors. It does not prove that every publisher independently verified the claims.
rights & provenance
PublisherThe Hacker News
Display policymetadata only
Rights reviewpending
Reader materiallegacy
CapturedJul 27, 2026
Integritysha256:1d3e9669bb89471906…
Coverage state measures available context, not whether every claim is true or independently corroborated. Unknown publication rights fail closed to metadata and the original source link.