CVE-2026-1470 | n8n up to 1.123.16/2.4.4/2.5.0 Workflow Expression Evaluation System eval injection
A vulnerability classified as critical has been found in n8n up to 1.123.16/2.4.4/2.5.0. This affects an unknown function of the component Workflow Expression Evaluation System. Performing a manipulation results in improper neutralization of directives in dynamically evaluated code.
This vulnerability is cataloged as CVE-2026-1470. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.