CVE-2026-85173 | n8n-io n8n up to 2.36.1 Insights API projectId improper authorization

SecurityVulns

A vulnerability marked as problematic has been reported in n8n-io n8n up to 2.36.1. This affects an unknown function of the component Insights API. This manipulation of the argument projectId causes improper authorization.

This vulnerability is registered as CVE-2026-85173. Remote exploitation of the attack is possible. No exploit is available.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More