Description
n8n is an open source workflow automation platform. Prior to 2.37.7 and 2.38.2, the /chat WebSocket route accepted a resumeToken and resumed a paused execution without checking that the target node supported chat messages. An anonymous form submitter who received that token could reuse it on the chat route to release a Send-and-Wait, non-chat HITL, or Wait approval gate. The affected authorization logic is packages/cli/src/chat/chat-execution-manager.ts, where canResumeOverChat did not gate the resume target. This issue is fixed in versions 2.37.7 and 2.38.2.
Published: 2026-09-08
Score: 6.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Unauthorized execution resumption via missing authorization check
Action: Patch immediately
AI Analysis

Impact

The vulnerability in n8n allows an unauthenticated user to reuse a previously obtained resumeToken on the /chat WebSocket endpoint. Because the server does not verify that the target node supports chat messages, an attacker can bypass approval gates such as Send‑and‑Wait, non‑chat HITL, or Wait approval gates. This results in an unauthorized release of a paused workflow, effectively granting the attacker the ability to trigger parts of a workflow without proper authorization. The weakness is an authorization bypass, recorded as CWE‑862.

Affected Systems

Products from n8n‑io, specifically the n8n workflow automation platform. Versions prior to 2.37.7 and 2.38.2 are affected. The issue is fixed in 2.37.7 and 2.38.2.

Risk and Exploitability

The CVSS score of 6.3 places the vulnerability in the moderate range. The EPSS score is not available, indicating no published exploitation data. The vulnerability is not listed in the CISA KEV catalog. The attack vector is web‑based via the WebSocket API; an attacker only needs to possess a valid resumeToken, which could be obtained through other anonymous form submissions. Because the vulnerable code bypasses authorization checks, the exploit requires only a browser or WebSocket client and does not need privileged credentials.

Generated by OpenCVE AI on September 9, 2026 at 08:40 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update n8n to version 2.37.7 or later, which removes the missing authorization check on /chat WebSocket resumption.
  • Restrict access to the /chat WebSocket endpoint so that only authenticated and authorized users can send resumeTokens.
  • Verify that all workflow gates (Send‑and‑Wait, HITL, Wait approval) require proper authentication before allowing execution to continue.

Generated by OpenCVE AI on September 9, 2026 at 08:40 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Github GHSA Github GHSA GHSA-35jj-42hp-8gmq n8n: Anonymous Approval-Gate Bypass via Reused resumeToken over the Chat WebSocket
History

Mon, 14 Sep 2026 13:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 11 Sep 2026 23:45:00 +0000

Type Values Removed Values Added
First Time appeared N8n
N8n n8n
CPEs cpe:2.3:a:n8n:n8n:*:*:*:*:*:node.js:*:*
Vendors & Products N8n
N8n n8n
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N'}


Tue, 08 Sep 2026 21:30:00 +0000

Type Values Removed Values Added
Description n8n is an open source workflow automation platform. Prior to 2.37.7 and 2.38.2, the /chat WebSocket route accepted a resumeToken and resumed a paused execution without checking that the target node supported chat messages. An anonymous form submitter who received that token could reuse it on the chat route to release a Send-and-Wait, non-chat HITL, or Wait approval gate. The affected authorization logic is packages/cli/src/chat/chat-execution-manager.ts, where canResumeOverChat did not gate the resume target. This issue is fixed in versions 2.37.7 and 2.38.2.
Title n8n: Anonymous Approval-Gate Bypass via Reused resumeToken over the Chat WebSocket
Weaknesses CWE-862
References
Metrics cvssV4_0

{'score': 6.3, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:L/VI:L/VA:N/SC:L/SI:L/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2026-09-14T12:05:05.655Z

Reserved: 2026-09-04T19:34:03.100Z

Link: CVE-2026-86077

cve-icon Vulnrichment

Updated: 2026-09-14T12:05:00.585Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-08T22:19:16.533

Modified: 2026-09-14T13:18:57.347

Link: CVE-2026-86077

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-13T20:05:58Z

Weaknesses