CVE-2026-103250 - n8n before 1.123.80, 2.39.6, and 2.40.1 NoSQL Injection via MongoDB Chat Memory
CVE ID :CVE-2026-103250 Published : Oct. 1, 2026, 10:41 a.m. | 35 minutes ago Description :n8n versions before 1.123.80, from 2.0.0 before 2.39.6, and from 2.40.0 before 2.40.1 contain a NoSQL injection vulnerability in the MongoDB Chat Memory node that fails to validate the sessionId...