CVE-2025-55526

n8n-workflows Main Commit ee25413 allows attackers to execute a directory traversal via the download_workflow function within api_server.py
References
Link Resource
https://github.com/Zie619/n8n-workflows/issues/48 Exploit Issue Tracking
Configurations

Configuration 1 (hide)

cpe:2.3:a:zie619:n8n_workflow_collection:2025-06-29:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-08-26 14:15

Updated : 2026-08-20 13:12


NVD link : CVE-2025-55526

Mitre link : CVE-2025-55526

CVE.ORG link : CVE-2025-55526


JSON object : View

Products Affected

zie619

  • n8n_workflow_collection
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')