CVE-2026-42229

HIGH

n8n: SQL Injection in SeaTable Node

Title source: cna
STIX 2.1

Description

n8n is an open source workflow automation platform. Prior to versions 1.123.32, 2.17.4, and 2.18.1, a flaw in the SeaTable node's row:search and row:get operations allowed user-controlled input to be concatenated directly into SQL query strings without escaping or parameterization. In workflows where external user input is passed via expressions into the SeaTable node's search or row retrieval parameters, an attacker could manipulate the constructed query to retrieve unintended rows from the connected SeaTable base, bypassing row-level filtering logic implemented in the workflow. This issue has been patched in versions 1.123.32, 2.17.4, and 2.18.1.

References (1)

Core 1
Core References

Scores

CVSS v3 8.8
EPSS 0.0006
EPSS Percentile 17.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-89
Status published
Products (8)
n8n/n8n 2.18.0
n8n/n8n < 1.123.32
n8n-io/n8n < 1.123.32
n8n-io/n8n >= 2.17.0, < 2.17.4
n8n-io/n8n >= 2.18.0, < 2.18.1
npm/n8n 0 - 1.123.32npm
npm/n8n 2.0.0 - 2.17.4npm
npm/n8n 2.18.0 - 2.18.1npm
Published May 04, 2026
Tracked Since May 05, 2026