CVE-2026-27497: 
NixOS vulnerability analysis and mitigation

Overview

CVE-2026-27497 is a Remote Code Execution (RCE) vulnerability in n8n, an open-source workflow automation platform, arising from SQL injection and code injection flaws in the Merge node's SQL query mode. An authenticated user with workflow creation or modification permissions can exploit this to execute arbitrary code and write arbitrary files on the n8n server. It was disclosed on February 25, 2026, and affects all n8n versions before 1.123.22, versions 2.0.0 through 2.9.2, and version 2.10.0. The vulnerability carries a CVSS v4.0 base score of 9.4 (Critical) and a CVSS v3.1 score of 8.8 (High) (Github Advisory, n8n Advisory).

Technical details

The root cause is a combination of CWE-89 (SQL Injection) and CWE-94 (Code Injection) — the Merge node's SQL query mode fails to properly neutralize user-supplied input before incorporating it into SQL commands and code execution contexts. An authenticated attacker can craft a malicious workflow leveraging the Merge node's SQL query mode to inject arbitrary SQL or code payloads that are evaluated server-side, resulting in arbitrary command execution and file writes on the host. No special configuration is required beyond having workflow creation or editing permissions, and no user interaction is needed beyond the attacker's own actions. The vulnerability was reported by security researchers allsmog and nil340 (Github Advisory, n8n Advisory).

Impact

Successful exploitation allows an authenticated attacker to achieve full server compromise — executing arbitrary code, reading and writing arbitrary files, and potentially exfiltrating sensitive data including stored credentials and workflow secrets. The CVSS v4.0 scoring reflects high impact across both the vulnerable system and subsequent systems (confidentiality, integrity, and availability all rated High), indicating significant potential for lateral movement to other infrastructure reachable from the n8n server. Attackers could also establish persistent access by writing web shells or backdoors, modify or destroy workflows and data, and disrupt platform availability (Github Advisory, Feedly).

Exploitability

As of the disclosure date, there is no public proof-of-concept exploit code and no confirmed evidence of in-the-wild exploitation (Github Advisory). The EPSS score is approximately 0.076% (23rd percentile), indicating a currently low but non-negligible probability of exploitation within 30 days. The vulnerability is not listed in the CISA Known Exploited Vulnerabilities (KEV) catalog. However, the low attack complexity and the requirement for only low-privilege authenticated access make it highly exploitable once an attacker gains any foothold on the platform, and the vulnerability has attracted attention from multiple national CERTs including Belgium's CCB and Ireland's NCSC (CCB Advisory, NCSC Ireland).

Exploitation steps

  1. Gain authenticated access: Obtain credentials for an n8n account with workflow creation or editing permissions — this could be via phishing, credential stuffing, or a free/trial account on a self-hosted instance.
  2. Identify a vulnerable instance: Confirm the target n8n version is below 1.123.22, between 2.0.0 and 2.9.2, or exactly 2.10.0 by checking the n8n UI version indicator or API responses.
  3. Create or modify a workflow: Navigate to the n8n workflow editor and create a new workflow (or modify an existing one) that includes a Merge node.
  4. Configure the Merge node in SQL query mode: Set the Merge node to use SQL query mode and inject a malicious SQL payload into the query field that exploits the lack of input sanitization to trigger code execution (e.g., leveraging AlaSQL's ability to execute JavaScript or write files via SQL extensions).
  5. Execute the workflow: Trigger the workflow execution, causing the n8n server to evaluate the injected payload and execute arbitrary code or write attacker-controlled files to the server filesystem.
  6. Establish persistence: Use the achieved code execution to drop a reverse shell, create a backdoor script, or exfiltrate stored credentials and workflow secrets from the server (Github Advisory, SecurityOnline).

Indicators of compromise

  • Logs: n8n workflow execution logs showing Merge node SQL query mode executions with unusual or complex SQL strings; unexpected errors in n8n application logs related to SQL parsing or file I/O operations triggered by workflow runs.
  • File System: Unexpected new files written to the n8n installation directory or adjacent paths (e.g., shell scripts, web shells, or configuration files) with timestamps correlating to workflow execution events; modification of existing n8n configuration files.
  • Process: Unusual child processes spawned by the n8n Node.js process (e.g., sh, bash, curl, wget, python, nc) that are not part of normal n8n operation; outbound network connections initiated by the n8n process to unknown external IPs.
  • Network: Unexpected outbound connections from the n8n server to external hosts, particularly on non-standard ports; DNS lookups for attacker-controlled domains originating from the n8n server process.
  • Application: New or modified workflows containing Merge nodes configured in SQL query mode with obfuscated or encoded query strings; workflow execution history showing runs by accounts that do not normally use the Merge node.

Mitigation and workarounds

n8n has released patched versions on February 25, 2026: 1.123.22, 2.9.3, and 2.10.1 — users should upgrade to one of these versions or later immediately (Github Advisory, n8n Release 1.123.22, n8n Release 2.10.1). If immediate patching is not possible, two temporary mitigations are available: (1) restrict workflow creation and editing permissions to fully trusted users only, and (2) disable the Merge node entirely by adding n8n-nodes-base.merge to the NODES_EXCLUDE environment variable. These workarounds do not fully eliminate the risk and should only be used as short-term measures while preparing to upgrade (n8n Advisory).

Community reactions

n8n published a security blog post and community forum bulletin on February 25, 2026, disclosing the vulnerability and directing users to patch immediately (n8n Blog, n8n Community). Multiple national cybersecurity agencies responded promptly: Belgium's Centre for Cybersecurity (CCB) issued a warning urging immediate patching, and Ireland's NCSC published a dedicated advisory (CCB Advisory, NCSC Ireland). Security media including The Hacker News and Heise covered the vulnerability, with The Hacker News noting it as part of a broader set of critical n8n flaws allowing RCE and credential exposure (The Hacker News, Heise). SecurityOnline described the vulnerability cluster as "triple 9.4 severity RCE flaws" threatening n8n workflow servers.

Additional resources


Source: This report was generated using AI

Related NixOS vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2026-103678HIGH8.1
  • NixOS logoNixOS
  • tnef
NoNoOct 01, 2026
CVE-2026-103680MEDIUM6.5
  • NixOS logoNixOS
  • tnef
NoNoOct 01, 2026
CVE-2026-103679MEDIUM6.5
  • NixOS logoNixOS
  • tnef
NoNoOct 01, 2026
CVE-2026-103497MEDIUM5.5
  • YouTrack logoYouTrack
  • cpe:2.3:a:jetbrains:youtrack
NoYesOct 01, 2026
CVE-2026-103496MEDIUM5.4
  • YouTrack logoYouTrack
  • youtrack
NoYesOct 01, 2026

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management