Server-Side Request Forgery (SSRF) in n8n - #VU131361
Published: May 13, 2026
n8n
Detailed vulnerability description
The vulnerability allows a remote user to cause the server to issue HTTP requests including credentials to unintended hosts.
The vulnerability exists due to server-side request forgery in the POST /rest/dynamic-node-parameters/options endpoint when handling requests for dynamic node parameter options. A remote user can send a crafted request to cause the server to issue HTTP requests including credentials to unintended hosts.
Exploitation requires access to the credential.