This is a heavily interactive web application, and JavaScript is required. Simple HTML interfaces are possible, but that is not what this is.
Post
Sami Laiho
samilaiho.com
did:plc:cjkobs4ue3nzabvgnydz4iwq
n8n: Unauthenticated File Access via Improper Webhook Request Handling
URL: https://github.com/n8n-io/n8n/security/advisories/GHSA-v4pr-fm98-w9pg
Classification: Critical, Solution: Official Fix, Exploit Maturity: Proof-of-Concept, CVSSv3.1: 10.0
CVEs: CVE-2026-21858
2026-01-08T05:35:43.236Z