{"repo":"TheStingR/CVE-2025-68613-POC","free":true,"listed":false,"github":"https://github.com/TheStingR/CVE-2025-68613-POC","clone":"git clone https://github.com/TheStingR/CVE-2025-68613-POC.git","description":"Public PoC + Scanner and research for CVE-2025-68613: Critical RCE in n8n Workflow Automation via Expression Injection (CVSS 10.0). Includes detection tools, full exploit, and remediation guidance.","language":"Python","stars":28,"topics":["cve-2025-68613","cve-scanner","cybersecurity","exploit","n8n","poc","rce","security"],"license":null,"category":"security-tools","readme_excerpt":"🚨 CVE-2025-68613: Critical RCE Vulnerability in n8n Table of Contents 1. Overview 2. What is n8n? 3. Vulnerability Basics 4. Technical Details 5. Affected Versions 6. Exploitation Mechanics 7. Real-World Impact 8. Detection Methods 9. Remediation & Mitigation 10. Resources & References --- Overview CVE-2025-68613 is a critical Remote Code Execution (RCE) vulnerability discovered in n8n , a popular open-source workflow automation platform. This vulnerability allows authenticated users to execute arbitrary code on the server, potentially leading to complete system compromise. Quick Facts - CVE ID : CVE-2025-68613 - CVSS Score : 9.9 - 10.0 (Critical) - Vulnerability Type : Expression Injection → Remote Code Execution - CWE : CWE-913 (Improper Control of Dynamically-Managed Code Resources) - Attack Vector : Network - Authentication Required : Yes (Low privilege - no admin access needed) - Status : Proof of Concept available (verified working on v1.121.0) --- What is n8n? n8n is an open-source workflow automation platform that allows users to: - Connect various APIs, databases, and services - Automate repetitive business processes - Create complex workflows without extensive coding - Deploy on-premises or in the cloud Why n8n is Critical Infrastructure Organizations use n8n to: - Integrate databases with cloud services - Automate data processing pipelines - Connect CRMs, ERPs, and internal systems - Manage sensitive data and API credentials This central role in IT infrastructure ","default_branch":null,"files":null,"tree":[],"storefront":"/r/TheStingR","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/TheStingR/CVE-2025-68613-POC/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}