The U.S. Cybersecurity and Infrastructure Security Agency
(CISA) on Wednesday added a critical security flaw impacting n8n to
its Known Exploited Vulnerabilities (KEV) catalog, based on
evidence of active exploitation. The vulnerability, tracked as
CVE-2025-68613 (CVSS score: 9.9), concerns a case of expression
injection that leads to remote code execution. The security
shortcoming was patched
Read more https://thehackernews.com/2026/03/cisa-flags-actively-exploited-n8n-rce.html

