CVE-2026-65015
Analyzed Analyzed - Analysis Complete

Privilege Escalation in n8n AI Agents via Node Execution

Vulnerability report for CVE-2026-65015, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-07-22

Last updated on: 2026-07-28

Assigner: VulnCheck

Description

n8n versions before 2.30.1 contain a privilege escalation vulnerability in the AI Agents feature where the node-execution tool lacks proper authorization checks. A Project Viewer user can escalate privileges by chatting with an agent that has node tools enabled, executing arbitrary nodes and accessing credential secrets without proper authorization verification.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-07-22
Last Modified
2026-07-28
Generated
2026-08-11
AI Q&A
2026-07-22
EPSS Evaluated
2026-08-10
NVD
EUVD

Affected Vendors & Products

Showing 4 associated CPEs
Vendor Product Version / Range
n8n n8n 2.30.0
n8n n8n 2.30.0
n8n n8n to 2.29.8 (exc)
n8n n8n to 2.29.8 (exc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-863 The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

CVE-2026-65015 is a privilege escalation vulnerability in n8n versions before 2.30.1. It affects the AI Agents feature where the node-execution tool lacks proper authorization checks. A Project Viewer user can escalate privileges by interacting with an agent that has node tools enabled, allowing execution of arbitrary nodes and access to credential secrets without proper verification.

Detection Guidance

To detect this vulnerability, check the version of n8n installed on your system. Run the command: n8n version. If the version is below 2.29.8 or 2.30.1, the system is vulnerable. Additionally, review AI Agents configurations to identify if node tools are enabled for agents.

Impact Analysis

This vulnerability allows a Project Viewer user to execute arbitrary nodes and access credential secrets they are not authorized to read. If command- or file-capable tool nodes are enabled, it could lead to arbitrary command execution on the n8n host. This impacts users sharing team projects with lower-privileged members.

Compliance Impact

The vulnerability could lead to unauthorized access to sensitive data, including credential secrets, which may violate compliance requirements under GDPR, HIPAA, or other regulations. Unauthorized command execution could further exacerbate compliance risks by allowing data exfiltration or system compromise.

Mitigation Strategies

Immediately update n8n to version 2.29.8 or 2.30.1 or later. If updating is not possible, disable the AI Agents module or restrict project membership to trusted users. Also, disable command-execution nodes like Execute Command or SSH to reduce risk.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-65015. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart