n8n Unauthenticated Remote Code Execution
What is the Vulnerability? | CVE-2026-21858 arises from a Content-Type confusion flaw in n8n’s webhook and form handling logic. Specifically, certain form-based workflows do not adequately validate or enforce multipart form content types, allowing attackers to override internal request parsing state. This allows unauthenticated attackers to: |
What is the recommended Mitigation? | Immediate upgrade to n8n version 1.121.0 or later - which includes fixes for CVE-2026-21858. Official hardening guidance: https://docs.n8n.io/hosting/securing/blocking-nodes/ |
What FortiGuard Coverage is available? |
|