Authorization bypass through user-controlled key in n8n - #VU150758
Published: September 17, 2026
Vulnerability details
The vulnerability allows a remote user to disclose sensitive information.
The vulnerability exists due to improper authorization in inline agent node-tool input schema resolution when registering a node tool on an inline agent. A remote user can specify an arbitrary instance credential ID and send its plaintext secret to a host of their choosing to disclose sensitive information.
Credential IDs may be available in workflow JSON, exports, and editor URLs.