CVE Explorer
CVE-2025-68668
n8n is an open source workflow automation platform. From version 1.0.0 to before 2.0.0, a sandbox bypass vulnerability exists in the Python Code Node that uses Pyodide. An authenticated user with permission to create or modify workflows can exploit this vulnerability to execute arbitrary commands on the host system running n8n, using the same privileges as the n8n process. This issue has been patched in version 2.0.0. Workarounds for this issue involve disabling the Code Node by setting the envi
Known exploited
Not asserted
Disputed
No
Stale source
No
Conflicts
0
Affected products and versions
1 source assertion{"product":"n8n","vendor":"n8n-io","versions":[{"status":"affected","version":">= 1.0.0, < 2.0.0"}]}
- cve_program_cvelist_v5affectedurn:baitaphish:normalized-source-record:v2:6fd389f9ed98b34439848a97f7cbd49f19799e686c94d572c1d1fe8efd5af493 · sha256:7b25eb5b5ec3c4a3… · /containers/cna/affected/0
Provider-owned CVSS observations
1 source assertion{"metric":{"attackComplexity":"LOW","attackVector":"NETWORK","availabilityImpact":"LOW","baseScore":9.9,"baseSeverity":"CRITICAL","confidentialityImpact":"HIGH","integrityImpact":"HIGH","privilegesRequired":"LOW","scope":"CHANGED","userInteraction":"NONE","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:L","version":"3.1"},"metric_type":"cvssV3_1"}
- cve_program_cvelist_v5cvssurn:baitaphish:normalized-source-record:v2:6fd389f9ed98b34439848a97f7cbd49f19799e686c94d572c1d1fe8efd5af493 · sha256:7b25eb5b5ec3c4a3… · /containers/cna/metrics/0/cvssV3_1
CWE assertions
1 source assertion{"cweId":"CWE-693","description":"CWE-693: Protection Mechanism Failure","lang":"en","type":"CWE"}
- cve_program_cvelist_v5cweurn:baitaphish:normalized-source-record:v2:6fd389f9ed98b34439848a97f7cbd49f19799e686c94d572c1d1fe8efd5af493 · sha256:7b25eb5b5ec3c4a3… · /containers/cna/problemTypes/0/descriptions/0
Source references
2 source assertions{"name":"https://github.com/n8n-io/n8n/security/advisories/GHSA-62r4-hw23-cc8v","tags":["x_refsource_CONFIRM"],"url":"https://github.com/n8n-io/n8n/security/advisories/GHSA-62r4-hw23-cc8v"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:6fd389f9ed98b34439848a97f7cbd49f19799e686c94d572c1d1fe8efd5af493 · sha256:7b25eb5b5ec3c4a3… · /containers/cna/references/0
{"url":"https://www.smartkeyss.com/post/cve-2025-68668-breaking-out-of-the-python-sandbox-in-n8n"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:6fd389f9ed98b34439848a97f7cbd49f19799e686c94d572c1d1fe8efd5af493 · sha256:7b25eb5b5ec3c4a3… · /containers/adp/1/references/0
Attribution and limitations
- CVE Program CVEList V5: Reproduce the MITRE copyright designation and CVE license in copies. Source →
Provider severity values are preserved separately. Baitaphish does not convert them into a risk rating, infer affected products, or treat EPSS as observed exploitation.