What is CVE-2026-65592?
This is a stored DOM-based XSS vulnerability found in the 'Resource Locator' component of n8n, where the cachedResultUrl parameter from a workflow is passed to window.open() without scheme validation. An attacker with workflow creation or editing privileges could exploit this to execute malicious scripts. Upgrading n8n to versions 1.123.64, 2.29.8, or 2.30.1 is recommended to mitigate the issue.
Azərbaycanca: Bu, n8n alətinin 'Resource Locator' komponentində aşkarlanmış saxlanılan DOM əsaslı XSS (cross-site scripting) zəifliyidir. Zəiflik, iş prosesində saxlanan 'cachedResultUrl' parametrinin sxem yoxlaması olmadan birbaşa 'window.open()' funksiyasına ötürülməsi nəticəsində yaranır və iş prosesi yaratma/redaktə etmək səlahiyyətinə malik hücumçuya təsir göstərməyə imkan verir. Təhlükəsizlik üçün n8n-nin göstərilən versiyalara (1.123.64, 2.29.8, 2.30.1) yenilənməsi tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-79; shared vendor: n8n
FAQ2
In which component of the n8n tool was CVE-2026-65592 discovered?
This vulnerability was discovered in the 'Resource Locator' component of the n8n tool.
What privileges must an attacker have to exploit the CVE-2026-65592 vulnerability?
An attacker must have workflow creation or editing privileges.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.