CVE-2025-52478

Publication date

2025-08-19 16:32:34

Family

GitHub_M

State

PUBLISHED

Description

n8n is a workflow automation platform. From 1.77.0 to before 1.98.2, a stored Cross-Site Scripting (XSS) vulnerability was identified in n8n, specifically in the Form Trigger nodes HTML form element. An authenticated attacker can inject malicious HTML via an