# n8n Token Exchange Vulnerability Allows Attackers to Impersonate Users from Different Issuers

A vulnerability in n8n's token exchange mechanism could allow attackers to log in as users from a different issuer, bypassing authentication boundaries. The flaw affects how tokens are validated across identity providers, potentially leading to unauthorized account access. This issue highlights risks in cross-issuer token handling for workflow automation platforms.

**Importance:** 3/5

## Sources

### Security
- [The Hacker News](https://thehackernews.com/2026/07/n8n-token-exchange-flaw-could-let.html) — Thu, 16 Jul 2026 19:03:25 +0530