CVE-2026-54687
Last modified
CVE-2026-54687 is a critical-severity vulnerability rated 9.8/10 on the CVSS scale. n8n-nodes-sqlite3 is a node for operating a local SQLite database from n8n. Prior to 1.0.0, nodes/SqliteNode/v1/SqliteV1.node.ts exposes the db_path database file path as a node parameter that permits data expressions from upstream workflow input. EPSS estimates a 0.46% chance of exploitation in the next 30 days.
Description
n8n-nodes-sqlite3 is a node for operating a local SQLite database from n8n. Prior to 1.0.0, nodes/SqliteNode/v1/SqliteV1.node.ts exposes the db_path database file path as a node parameter that permits data expressions from upstream workflow input. A workflow author who maps untrusted input to db_path can allow a remote attacker to select which SQLite file the n8n process opens, enabling traversal outside the intended database location and potentially reading, creating, or overwriting files accessible to the process. This issue is fixed in version 1.0.0.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Dangerblack | N8n-Node-Sqlite3 | 1.0.0 |
References
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2026-54687?
How severe is CVE-2026-54687?
How do I fix CVE-2026-54687?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-54680Logging operator automates the deployment and configuration …9.9
- CVE-2026-54681DiscordChatExporter saves Discord chat logs to a file. Prior…4.1
- CVE-2026-54682DiscordChatExporter saves Discord chat logs to a file. Prior…8.2
- CVE-2026-54684jadx is a Dex to Java decompiler. From 1.5.2 to 1.5.5, a mal…7
- CVE-2026-54685FileBrowser Quantum is a free, self-hosted, web-based file m…5.3
- CVE-2026-54686Warp is an agentic development environment. From 0.2021.04.2…4.3
- CVE-2026-54688mcp-searxng is a Model Context Protocol server that gives AI…6.5
- CVE-2026-54689mcp-searxng is a Model Context Protocol server that gives AI…6.3
- CVE-2026-5469A weakness has been identified in Casdoor 2.356.0. This vuln…7.2
- CVE-2026-54690datamodel-code-generator generates Pydantic v2 models, datac…8.2
- CVE-2026-54691datamodel-code-generator generates Python data models from s…8.2
- CVE-2026-54692SAIL is a cross-platform library for loading and saving imag…7.8
Are you affected by CVE-2026-54687?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
