PT-2026-85004 · N8N · N8N

·

CVE-2026-85172

·

Published

2026-09-03

·

Updated

2026-09-03

CVSS v4.0

5.3

Medium

VectorAV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:N/SC:L/SI:L/SA:N
Name of the Vulnerable Software and Affected Versions n8n versions prior to 2.34.1
Description A server-side request forgery (SSRF) issue exists in the legacy request helper function used by Code and Function nodes. The system validates the uri property for safety, but the HTTP client utilizes the url property if both are provided. This discrepancy allows an attacker to bypass security checks by providing a legitimate uri and a malicious url to access internal network addresses.
Recommendations Update to version 2.34.1 or later. As a temporary mitigation, restrict the use of the legacy request helper function within Code and Function nodes.

Exploit

Fix

SSRF

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-85172
GHSA-JP9J-JR97-W9PJ

Affected Products

N8N