CVE-2026-65015 Details
Description
n8n versions before 2.30.1 contain a privilege escalation vulnerability in the AI Agents feature where the node-execution tool lacks proper authorization checks. A Project Viewer user can escalate privileges by chatting with an agent that has node tools enabled, executing arbitrary nodes and accessing credential secrets without proper authorization verification.
A privilege escalation vulnerability has been identified in n8n versions prior to 2.30.1, within the AI Agents feature. The issue arises because the node-execution tool does not implement proper authorization checks. This allows a Project Viewer user to escalate privileges by interacting with an agent that has node tools enabled. The user can execute arbitrary nodes and access credential secrets without appropriate authorization verification. As a result, they can gain access to execution capabilities that their role should not permit, potentially leading to unauthorized command execution on the n8n host.
Users should upgrade to n8n version 2.30.1 or later. If an immediate upgrade is not possible, administrators can temporarily disable the AI Agents module, restrict project membership to trusted users, and disable command-execution nodes to mitigate the risk.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Jul 22, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://github.com/n8n-io/n8n/security/advisories/GHSA-x5vx-c2c8-m3w9 | [email protected] | MitigationVendor Advisory |
| https://www.vulncheck.com/advisories/n8n-before-privilege-escalation-via-run-node-tool | [email protected] | Third Party AdvisoryVDB Entry |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-863 | Incorrect Authorization | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| n8n n8n | < 2.29.8 2.30.0 |
CPE
Remediation
| |
Change History
4 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jul 28, 2026 | Reanalysis | [email protected] |
| Jul 27, 2026 | Initial Analysis | [email protected] |
| Jul 22, 2026 | CVE Modified | CISA-ADP |
| Jul 22, 2026 | New CVE Received | [email protected] |