Advisory Database
  • Advisories
  • Dependency Scanning
  1. npm
  2. ›
  3. n8n
  4. ›
  5. GHSA-jqwr-vx3p-r266

GHSA-jqwr-vx3p-r266: n8n: PostgresTrigger Node SQL Injection Allows Authenticated Users to Execute Arbitrary SQL on Connected PostgreSQL Instances

July 22, 2026

The Postgres Trigger node interpolated user-supplied identifier parameters (channel, function, and trigger names) into SQL statements without proper escaping, so an authenticated user could inject arbitrary SQL executed against the connected PostgreSQL database with the configured credential’s privileges.

Successful exploitation allows full read and write access to the connected PostgreSQL database.

References

  • github.com/advisories/GHSA-jqwr-vx3p-r266
  • github.com/n8n-io/n8n/releases/tag/n8n@1.123.67
  • github.com/n8n-io/n8n/releases/tag/n8n@2.31.5
  • github.com/n8n-io/n8n/releases/tag/n8n@2.32.1
  • github.com/n8n-io/n8n/security/advisories/GHSA-jqwr-vx3p-r266

Code Behaviors & Features

Detect and mitigate GHSA-jqwr-vx3p-r266 with GitLab Dependency Scanning

Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →

Affected versions

All versions before 1.123.67, all versions starting from 2.0.0-rc.0 before 2.31.5, all versions starting from 2.32.0 before 2.32.1

Fixed versions

  • 1.123.67
  • 2.31.5
  • 2.32.1

Solution

Upgrade to versions 1.123.67, 2.31.5, 2.32.1 or above.

Impact 8.8 HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Learn more about CVSS

Weakness

  • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

Source file

npm/n8n/GHSA-jqwr-vx3p-r266.yml

Spotted a mistake? Edit the file on GitLab.

  • Site Repo
  • About GitLab
  • Terms
  • Privacy Statement
  • Contact

Page generated Sat, 08 Aug 2026 00:18:12 +0000.