n8n is an open-source workflow automation platform. In versions prior to 1.123.12 and 2.4.0, workflows that process uploaded files and then transfer them to remote servers via the SSH node may fail to validate file metadata properly. An attacker who knows of such workflows and can upload files to unauthenticated endpoints could cause files to be written to unintended locations on remote systems, potentially enabling remote code execution on those systems. The vulnerability is rated High (CVSS 3.1 base score 8.1) and has been patched in n8n 1.123.12 and 2.4.0.
The IONIX research team is tracking ongoing exploitation attempts and recommends immediate patching. Potentially affected assets are outlined in this post.
References:

