n8nio/n8n:1.86.0 container image
Docker HubScanned 14 Sept 2026
Deployed by 1 of 17,781 indexed charts (latest versions) at this tag.Docker Hub all tags of n8nio/n8n
n8nio/n8n:1.86.0 resolved to 8b39ed5a2de9, scanned 14 Sept 2026: 488 findings, 3 critical, 1 on KEV; deployed by 1 chart, among them n8n.
Radar Score
Radar Score is the sum of every finding’s contribution; the colour is the worst finding’s band.
Vulnerabilities
488 distinct on this digest
Findings for digest 8b39ed5a2de9 as scanned on 14 Sept 2026 with syft 1.42.1 for linux/amd64, advisories as of 14 Sept 2026. Other architectures may differ.
| Severity | Advisory | Package | Fixed in |
|---|---|---|---|
| Low | GHSA-8cw4-87c7-c6xx | csv-parse | 7.0.2 |
| Low | GHSA-6qc9-mqvw-jg7x | n8n | 1.123.67 |
| Low | GHSA-v733-mwr6-fgcm | n8n | 1.123.55 |
| Low | GHSA-83g3-92jg-28cx | tar | 7.5.8 |
| Low | GHSA-9wcp-9r3j-383q | n8n | 1.123.64 |
| Low | GHSA-42h7-m79w-wvg5 | n8n | 1.123.55 |
| Low | GHSA-h86q-fx34-gfjr | n8n | 2.24.0 |
| Low | GHSA-g9mf-h72j-4rw9 | undici | 6.23.0 |
| Low | GHSA-jqff-g426-hqxp | fast-uri | 3.1.6 |
| Low | GHSA-9c38-2mcm-q7f7 | n8n | 2.25.7 |
| Low | GHSA-qj8w-gfj5-8c6v | serialize-javascript | 7.0.5 |
| Low | GHSA-j4p8-h8mh-rh8q | n8n | 2.0.0 |
| Low | GHSA-w8wr-v893-vjvp | tar | 7.5.18 |
| Low | GHSA-58jc-rcg5-95f3 | n8n | 1.114.0 |
| Low | GHSA-vjf3-2gpj-233v | n8n | 2.8.0 |
| Low | GHSA-m7pr-hjqh-92cm | axios | 1.15.1 |
| Low | GHSA-jp7m-xcgx-57qm | n8n | 1.123.61 |
| Low | GHSA-7p8r-x3mc-p8w7 | fast-uri | 3.1.5 |
| Low | GHSA-xmc9-4f2h-jf9c | n8n | 1.123.67 |
| Low | GHSA-f65p-4m7j-42xc | fast-uri | 3.1.6 |
| Low | GHSA-756q-gq9h-fp22 | n8n | 1.123.32 |
| Low | GHSA-jp2q-39xq-3w4g | fast-xml-parser | 4.5.5 |
| Low | GHSA-2434-3x6q-8r99 | n8n | 2.27.4 |
| Low | GHSA-p6gq-j5cr-w38f | nodemailer | 9.0.1 |
| Low | GHSA-869p-cjfg-cm3x | jws | 4.0.1 |
| Low | GHSA-6gmq-8vp8-gcm6 | @xmldom/ | 0.8.15 |
| Low | GHSA-mmx7-hfxf-jppx | axios | 1.18.0 |
| Low | ALPINE-CVE-2026-40200 | musl | 1.2.5-r11 |
| Low | GHSA-vvjj-xcjg-gr5g | nodemailer | 8.0.5 |
| Low | GHSA-2vx9-7wpg-88jq | n8n | 2.19.3 |
| Low | ALPINE-CVE-2025-66199 | openssl | 3.3.6-r0 |
| Low | GHSA-34ff-336r-5q23 | n8n | 1.123.76 |
| Low | GHSA-hwmj-qg4v-cvg9 | n8n | 1.123.61 |
| Low | GHSA-33q9-f52j-gc75 | n8n | 2.27.4 |
| Low | GHSA-f2cp-m7mv-8jpv | n8n | 1.123.76 |
| Low | GHSA-44fc-8fm5-q62h | convict | 6.2.5 |
| Low | GHSA-hf2r-9gf9-rwch | convict | 6.2.5 |
| Low | GHSA-52v5-jr5w-gjxr | sigstore | 4.1.1 |
| Low | GHSA-65ch-62r8-g69g | node-forge | 1.3.2 |
| Low | GHSA-cj9h-qx8g-pq2g | n8n | 1.123.67 |
| Low | GHSA-h3jj-5f3v-3685 | n8n | 2.25.7 |
| Low | GHSA-22g5-r2x5-97cx | showdown | no fix listed |
| Low | ALPINE-CVE-2026-22796 | openssl | 3.3.6-r0 |
| Low | GHSA-gvwx-54wh-qm9j | tar | 7.5.17 |
| Low | GHSA-64xh-79j6-r5v8 | n8n | 2.31.5 |
| Low | GHSA-cr32-g25g-vxjj | showdown | no fix listed |
| Low | GHSA-9965-vmph-33xx | validator | 13.15.20 |
| Low | GHSA-9cmh-xcqm-5hqr | n8n | 1.123.67 |
| Low | GHSA-27v5-c462-wpq7 | path-to-regexp | 8.4.0 |
| Low | GHSA-xvh5-5qg4-x9qp | n8n | 1.123.22 |