Vulnerability Details CVE-2025-56265
An arbitrary file upload vulnerability in the Chat Trigger component of N8N v1.95.3, v1.100.1, and v1.101.1 allows attackers to execute arbitrary code via uploading a crafted HTML file.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 17.3%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2025-56265
-
cpe:2.3:a:n8n:n8n:1.100.1
-
cpe:2.3:a:n8n:n8n:1.101.1
-