All verified exploits

CVE-2025-68613 Expression Injection RCE

Deterministic critical n8n CISA KEV Added cve-verified-cve-2025-68613

Detects n8n instances running versions 0.211.0 through 1.120.3 or 1.121.0 where the workflow expression evaluation engine allows authenticated users to escape the sandbox and execute arbitrary OS commands via prototype chain access to the Node.js process object.

Is your app exploitable through CVE-2025-68613?

Scan your domain free