<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 20:37:15 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-331797</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-331797</link>
      <description>EUVD-2026-331797</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-331797</guid>
    </item>
    <item>
      <title>fkie_cve-2026-56350</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-56350</link>
      <description>&lt;p&gt;n8n before 2.8.0 contains an authentication bypass vulnerability allowing authenticated SSO users to disable SSO enforcement through the API. Attackers can create local password credentials to authenticate directly, bypassing organizational SSO policies and identity-provider-enforced multi-factor authentication.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;n8n before 2.8.0 contains an authentication bypass vulnerability allowing authenticated SSO users to disable SSO enforcement through the API. Attackers can create local password credentials to authenticate directly, bypassing organizational SSO policies and identity-provider-enforced multi-factor authentication.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-56350</guid>
    </item>
    <item>
      <title>GHSA-j7c2-5x6r-g9w8</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-j7c2-5x6r-g9w8</link>
      <description>&lt;p&gt;n8n before 2.8.0 contains an authentication bypass vulnerability allowing authenticated SSO users to disable SSO enforcement through the API. Attackers can create local password credentials to authenticate directly, bypassing organizational SSO policies and identity-provider-enforced multi-factor authentication.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;n8n before 2.8.0 contains an authentication bypass vulnerability allowing authenticated SSO users to disable SSO enforcement through the API. Attackers can create local password credentials to authenticate directly, bypassing organizational SSO policies and identity-provider-enforced multi-factor authentication.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-j7c2-5x6r-g9w8</guid>
    </item>
    <item>
      <title>NCSC-2026-0248 — Kwetsbaarheden verholpen in n8n workflow automation platform</title>
      <link>https://cve.radiocsirt.org/vuln/ncsc-2026-0248</link>
      <description>NCSC-2026-0248</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ncsc-2026-0248</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-0532 — n8n: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0532</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in n8n ausnutzen, um beliebigen Programmcode auszuführen, um Sicherheitsvorkehrungen zu umgehen, um Daten zu manipulieren, um einen SQL-Injection Angriff durchzuführen, und um einen Cross-Site Scripting Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in n8n ausnutzen, um beliebigen Programmcode auszuführen, um Sicherheitsvorkehrungen zu umgehen, um Daten zu manipulieren, um einen SQL-Injection Angriff durchzuführen, und um einen Cross-Site Scripting Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0532</guid>
    </item>
  </channel>
</rss>
