https://reddit.com/r/cybersecurity/comments/1qwo8ip/n8n_cve202568613_and_cve202625049_critical_rce/: n8n CVE-2025-68613 and CVE-2026-25049: Critical RCE Vulnerabilities
Published Feb 5, 2026
·Updated
Affected Software
1 affected component
npm/n8n
CVE-2025-68613 is classified as a critical remote code execution vulnerability.
CVE-2026-25049 allows attackers to execute arbitrary code remotely, bypassing existing security measures.
To mitigate CVE-2025-68613, update to the latest version of n8n as soon as it is available.
Yes, CVE-2026-25049 is exploitable in older versions of n8n that have not been patched.
If affected by CVE-2025-68613 and CVE-2026-25049, immediately apply the recommended security updates and review your system configurations.