Authentication Bypass by Spoofing in n8n - #VU127203
Published: April 23, 2026
n8n
Detailed vulnerability description
The vulnerability allows a remote attacker to trigger the workflow with arbitrary data.
The vulnerability exists due to authentication bypass by spoofing in the GitHub Webhook Trigger node when handling webhook POST requests. A remote attacker can send unsigned POST requests to trigger the workflow with arbitrary data.
Exploitation requires knowledge of the webhook URL.