Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2hc9-cc65-xwj8

Опубликовано: 05 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

An issue in ComfyUI-Manager prior to version 3.38 allowed remote attackers to potentially manipulate its configuration and critical data. This was due to the application storing its files in an insufficiently protected location that was accessible via the web interface

An issue in ComfyUI-Manager prior to version 3.38 allowed remote attackers to potentially manipulate its configuration and critical data. This was due to the application storing its files in an insufficiently protected location that was accessible via the web interface

EPSS

Процентиль: 14%
0.00046
Низкий

7.5 High

CVSS3

Дефекты

CWE-420

Связанные уязвимости

CVSS3: 7.5
nvd
около 1 месяца назад

An issue in ComfyUI-Manager prior to version 3.38 allowed remote attackers to potentially manipulate its configuration and critical data. This was due to the application storing its files in an insufficiently protected location that was accessible via the web interface

EPSS

Процентиль: 14%
0.00046
Низкий

7.5 High

CVSS3

Дефекты

CWE-420