The Chonkerton

CVE-2026-33696: From a Schema Name to RCE in n8n

dev_tools

A vulnerability in n8n, a workflow automation platform, allows attackers to escalate from schema name inputs to remote code execution through prototype pollution, per security researcher Simon Koeck. The flaw is tracked as CVE twenty twenty-six thirty-three thousand six hundred ninety-six.

Source: https://simonkoeck.com/writeups/n8n-gsuiteadmin-prototype...

Listen to this story

Hear this and more stories in a personalized audio briefing.

Open The Chonkerton