← fix library

FIX CARD
PRODUCT n8n
SEVERITY HIGH

HIGH

n8n CVE-2026-65598 — n8n: Race Condition in Git Clone Node Allows Authenticated Users to Achieve Remo

Why it matters

n8n: Race Condition in Git Clone Node Allows Authenticated Users to Achieve Remote Code Execution

Fix it: 2 steps

  1. Upgrade to 1.123.64 or later. This is the only complete fix.
  2. Until patched, take it off the internet: sudo ufw deny 5678 or bind it to localhost.

Verify it’s fixed

curl -s http://YOUR_SERVER_IP:5678/rest/settings | grep -o 'n8n@[0-9.]*'  # must be >= 1.123.64

References

CVE mapping behind this card: human-verified, last checked 2026-07-29.

Not sure if your stack is exposed?

Run the free check: usually under a minute, safe read-only probes.

Scan your stack