Miggo Logo

CVE-2025-52554:
n8n is vulnerable to Improper Authorization through its `/stop` endpoint

4.3

CVSS Score
3.1

Basic Information

EPSS Score
0.16609%
Published
7/3/2025
Updated
7/3/2025
KEV Status
No
Technology
TechnologyJavaScript

Technical Details

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Package NameEcosystemVulnerable VersionsFirst Patched Version
n8nnpm< 1.99.11.99.1

Vulnerability Intelligence
Miggo AIMiggo AI

Miggo AIRoot Cause Analysis:
In progress

WAF Protection Rules

WAF Rule

## Summ*ry *n *ut*oriz*tion vuln*r**ility w*s *is*ov*r** in t** `/r*st/*x**utions/:i*/stop` *n*point o* n*n. *n *ut**nti**t** us*r **n stop work*low *x**utions t**t t**y *o not own or t**t **v* not ***n s**r** wit* t**m, l***in* to pot*nti*l *usin*s

Reasoning

No *n*lysis *v*il**l*