Логотип exploitDog
bind:CVE-2026-22777
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2026-22777

Количество 2

Количество 2

nvd логотип

CVE-2026-22777

10 дней назад

ComfyUI-Manager is an extension designed to enhance the usability of ComfyUI. Prior to versions 3.39.2 and 4.0.5, an attacker can inject special characters into HTTP query parameters to add arbitrary configuration values to the config.ini file. This can lead to security setting tampering or modification of application behavior. This issue has been patched in versions 3.39.2 and 4.0.5.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-562r-8445-54r2

7 дней назад

ComfyUI-Manager is Vulnerable to CRLF Injection in Configuration Handler

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-22777

ComfyUI-Manager is an extension designed to enhance the usability of ComfyUI. Prior to versions 3.39.2 and 4.0.5, an attacker can inject special characters into HTTP query parameters to add arbitrary configuration values to the config.ini file. This can lead to security setting tampering or modification of application behavior. This issue has been patched in versions 3.39.2 and 4.0.5.

CVSS3: 7.5
0%
Низкий
10 дней назад
github логотип
GHSA-562r-8445-54r2

ComfyUI-Manager is Vulnerable to CRLF Injection in Configuration Handler

CVSS3: 7.5
0%
Низкий
7 дней назад

Уязвимостей на страницу