Executive brief
n8n is a workflow automation tool used to connect different software services. A security flaw in its GraphQL component allows users with workflow editing permissions to bypass security restrictions intended to limit where sensitive credentials can be sent. This could allow an internal user to steal authentication keys or passwords by redirecting them to a server they control.
Technical details
An incorrect authorization vulnerability (CWE-863) exists in n8n's GraphQL node. While the standard HTTP Request node enforces 'Allowed HTTP Request Domains' restrictions, the GraphQL node fails to do so for HTTP-based credentials including Header Auth, Basic Auth, Query Auth, and OAuth. An authenticated attacker with permissions to create or edit workflows can configure a GraphQL node to point to an attacker-controlled endpoint, causing the system to send restricted credentials to that external server. This affects instances where credentials have domain restrictions configured and are shared with non-owner users. Patches are available in versions 1.123.64, 2.29.8, and 2.30.1.
Affected products
- n8n-io n8n < 1.123.64, < 2.29.8, < 2.30.1
Timeline
- 2026-07-08: advisory: Original advisory GHSA-gq66-9cw5-j5jm published
- 2026-07-22: disclosed: CVE-2026-65596 published
- 2026-07-22: other: Duplicate advisory GHSA-88c4-pcqm-3r9p withdrawn