@n8n/n8n-nodes-langchain@2.2.3

  • latest version

    2.34.4

  • latest non vulnerable version

  • first published

    2 years ago

  • latest version published

    1 days ago

  • licenses detected

  • Direct Vulnerabilities

    Known vulnerabilities in the @n8n/n8n-nodes-langchain package. This does not include vulnerabilities belonging to this package’s dependencies.

    Fix vulnerabilities automatically

    Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

    Fix for free
    VulnerabilityVulnerable Version
    • H
    Incorrect Authorization

    @n8n/n8n-nodes-langchain is a Banner image

    Affected versions of this package are vulnerable to Incorrect Authorization via the Execute Sub-workflow. An attacker can access unauthorized credentials by referencing credential IDs within inline workflow JSON, bypassing intended access controls.

    Note: This is only exploitable if workflow sharing is enabled and the attacker has been explicitly granted Editor access to a shared workflow, and knows the target credential's ID.

    How to fix Incorrect Authorization?

    Upgrade @n8n/n8n-nodes-langchain to version 1.122.46, 2.31.3, 2.32.1 or higher.

    <1.122.46>=2.0.0-rc.0 <2.31.3>=2.32.0 <2.32.1
    • M
    Server-side Request Forgery (SSRF)

    @n8n/n8n-nodes-langchain is a Banner image

    Affected versions of this package are vulnerable to Server-side Request Forgery (SSRF) in the MCP Client. An attacker can access internal or otherwise restricted network resources by supplying crafted endpoints, causing the server to connect to unintended hosts and return sensitive responses through workflow execution.

    Note: This is only exploitable if SSRF protection is enabled and the attacker has permissions to create or edit workflows.

    How to fix Server-side Request Forgery (SSRF)?

    Upgrade @n8n/n8n-nodes-langchain to version 2.31.3, 2.32.1 or higher.

    <2.31.3>=2.32.0 <2.32.1
    • M
    Cross-site Scripting (XSS)

    @n8n/n8n-nodes-langchain is a Banner image

    Affected versions of this package are vulnerable to Cross-site Scripting (XSS) via the ChatTrigger template rendering in ChatTrigger/templates.ts. An authenticated user who can create or edit workflows can inject malicious JavaScript by supplying crafted Custom CSS in a Chat Trigger node, and anyone visiting the public chat page will execute it. The flaw allows the attacker to persist a script in the workflow configuration and have it run in other users’ browsers at the chat URL, exposing session data or enabling actions in the victim’s browser under their identity.

    Notes

    • The vulnerable flow is the HTML template used by the public chat page, so the stored payload runs wherever that chat URL is rendered rather than only inside the workflow editor.
    • The issue is gated by workflow edit/create permissions: only users who can modify workflows can place the malicious Custom CSS into the Chat Trigger node.

    Workarounds

    • Limit workflow creation and editing permissions to fully trusted users only, which reduces the chance that an untrusted authenticated user can store malicious Custom CSS in a Chat Trigger workflow.
    • Disable the Chat Trigger node by adding @n8n/n8n-nodes-langchain.chatTrigger to the NODES_EXCLUDE environment variable, which prevents the vulnerable public chat page from being exposed.

    How to fix Cross-site Scripting (XSS)?

    Upgrade @n8n/n8n-nodes-langchain to version 1.122.19, 2.13.1, 2.14.1 or higher.

    <1.122.19>=2.0.0-rc.0 <2.13.1<2.14.1
    • H
    Cross-site Scripting (XSS)

    @n8n/n8n-nodes-langchain is a Banner image

    Affected versions of this package are vulnerable to Cross-site Scripting (XSS) via the webhookId parameter in the Chat Trigger node. An attacker can execute arbitrary JavaScript in the context of another user's session by injecting malicious code, which is then triggered when a logged-in user visits the affected chat URL.

    How to fix Cross-site Scripting (XSS)?

    Upgrade @n8n/n8n-nodes-langchain to version 1.122.39, 2.25.2, 2.26.1 or higher.

    <1.122.39>=2.0.0-rc.0 <2.25.2>=2.26.0 <2.26.1
    • M
    Missing Authentication for Critical Function

    @n8n/n8n-nodes-langchain is a Banner image

    Affected versions of this package are vulnerable to Missing Authentication for Critical Function in the Chat Trigger node when configured with n8n User Auth authentication. An attacker can gain unauthorized access by circumventing the authentication check.

    Note:

    This is only exploitable if the Chat Trigger node is configured with n8n User Auth authentication (non-default).

    How to fix Missing Authentication for Critical Function?

    Upgrade @n8n/n8n-nodes-langchain to version 1.122.16, 2.9.1, 2.10.1 or higher.

    <1.122.16>=2.0.0 <2.9.1>=2.10.0 <2.10.1
    • M
    Improper Neutralization of Input Used for LLM Prompting

    @n8n/n8n-nodes-langchain is a Banner image

    Affected versions of this package are vulnerable to Improper Neutralization of Input Used for LLM Prompting via the Guardrail node. An attacker can modify workflow input to circumvent intended restrictions by crafting specific input values.

    How to fix Improper Neutralization of Input Used for LLM Prompting?

    Upgrade @n8n/n8n-nodes-langchain to version 2.10.0 or higher.

    <2.10.0
    • H
    Cross-site Scripting (XSS)

    @n8n/n8n-nodes-langchain is a Banner image

    Affected versions of this package are vulnerable to Cross-site Scripting (XSS) via the workflow creation and editing process in various nodes, including Form Trigger, Chat Trigger, Send & Wait, Webhook, and Chat nodes. An attacker can execute arbitrary scripts in the browsers of users who visit affected pages by injecting malicious payloads, potentially leading to session hijacking and account takeover.

    How to fix Cross-site Scripting (XSS)?

    Upgrade @n8n/n8n-nodes-langchain to version 1.122.16, 2.9.1, 2.10.1 or higher.

    <1.122.16>=2.0.0 <2.9.1>=2.10.0 <2.10.1