Executive brief
A vulnerability in n8n's computer-use file-search tool allows users to access files outside of the intended directory. n8n is a workflow automation platform, and this flaw could allow an attacker to read sensitive system files or configuration data that they should not have access to. This could lead to the exposure of credentials or other private information stored on the server hosting the application.
Technical details
A path-confinement bypass exists in the @n8n/computer-use component's search_files tool. The vulnerability is caused by improper validation of search patterns, allowing an attacker to use crafted input to escape the configured base directory. An attacker with the ability to influence search input (typically requiring low privileges) can retrieve the names and contents of arbitrary files accessible to the n8n process's OS user. The issue is addressed in versions 2.31.5 and 2.32.1.
Affected products
- n8n-io n8n < 2.31.5, >= 2.32.0 < 2.32.1
Timeline
- 2026-07-22: disclosed
- 2026-07-22: patched
- 2026-07-22: advisory