We’re launching Lyria 3.5 in Google Flow Music, with advances across musicality, lyrics, vocals, and creative control
deepmind.google·6d ago
TL;DR
A vulnerability identified as CVE-2026-59208 allows cross-issuer account takeover in n8n, an open-source workflow automation tool. This flaw enables attackers to exploit authentication tokens across different identity providers.
✦ Why It Matters
Update n8n to the latest version immediately to protect against account takeover vulnerabilities.
Key Takeaways
How It Works
The vulnerability arises from inadequate validation of issuer claims during the authentication process. Attackers can exploit this by presenting false claims from a different identity provider, tricking the system into granting access.
Related