Improper access control in n8n - #VU146803
Published: September 2, 2026
Vulnerability details
The vulnerability allows a remote attacker to bypass an approval gate and resume a paused execution.
The vulnerability exists due to improper access control in the /chat WebSocket route when resuming a paused execution from a reused resume token. A remote attacker can present a resume token obtained as an anonymous form submitter to bypass an approval gate and resume a paused execution.
Exploitation requires a resume token that was handed to an anonymous form submitter.