A vulnerability marked as critical has been reported in n8n-io n8n up to 2.31.4/2.32.0. This vulnerability affects unknown code of the component Token Exchange Embed Login feature. This manipulation causes improper authentication.
This vulnerability is registered as CVE-2026-72772. Remote exploitation of the attack is possible. No exploit is available.
It is suggested to upgrade the affected component.