CVE-2026-45582 MEDIUM

CVE-2026-45582: n8n-MCP: Workflow telemetry sanitizer could retain partial values from URL-shaped node parameters

Vendor Czlonkowski
Product n8n-mcp
Weakness CWE-201
Published May 29, 2026
Last update May 29, 2026

CVSS base score

6.5/10
Attack vector Network
Attack complexity Low
Privileges required Low
User interaction None
Confidentiality High
Integrity None

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

What the vulnerability does

01Description

n8n-MCP is an MCP server that provides AI assistants access to n8n node documentation, properties, and operations. Prior to 2.51.3, the workflow telemetry sanitizer could retain partial fragments of URL-shaped node parameters before sending workflow data to the project's anonymous telemetry backend. Values placed in HTTP-Request-style node parameters — such as customer or tenant identifiers, short secrets embedded in query strings, and signed request parameters — could therefore appear in stored telemetry, contrary to the collection boundary documented in PRIVACY.md. This vulnerability is fixed in 2.51.3.

Key dates

02Disclosure timeline

May 29, 2026 CVE published
May 29, 2026 Record updated