
Critical unauthenticated RCE in n8n (CVE-2026-21858, CVSS 10.0) allows full instance takeover
A critical vulnerability (CVE-2026-21858, CVSS score 10.0) was disclosed affecting the n8n workflow automation platform, allowing attackers to remotely execute code and fully take over vulnerable instances without any authentication. Due to the potential for complete compromise of automation infrastructure, data exposure, and downstream access to integrated systems, immediate patching is required. The issue originates …











