CVE-2026-54303 | n8n-io n8n up to 2.23.x Content-Security-Policy cross site scripting (GHSA-h86q-fx34-gfjr)
A vulnerability was found in n8n-io n8n up to 2.23.x. It has been rated as problematic. The affected element is an unknown function of the component Content-Security-Policy Handler. Performing a manipulation results in cross site scripting.
This vulnerability is cataloged as CVE-2026-54303. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is advised.