CYBERHAWK / CVE / CVE-2026-42236

CVE-2026-42236

n8n

HIGH CVSS 7.5 ai vibe

The flaw

Unauthenticated MCP OAuth client registration endpoint allows memory exhaustion attacks.

What to do

Update to version 1.123.32, 2.17.4, or 2.18.1

▸ Scan my repo for CVE-2026-42236

References

First seen 2026-05-08 · Tracked by PickBits CyberHawk · Weekly CVE digest