In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsLearn about Server-side Request Forgery (SSRF) vulnerabilities in an interactive lesson.
Start learningUpgrade n8n-core to version 2.20.0 or higher.
n8n-core is a Core functionality of n8n
Affected versions of this package are vulnerable to Server-side Request Forgery (SSRF) via the POST /rest/dynamic-node-parameters/options endpoint. An attacker can redirect responses to a server under their control by sending a specially crafted request with loadOptions.routing.request.url set to another host.