Unrated severityOSV Advisory· Published Jan 5, 2026· Updated Jan 5, 2026
CVE-2025-67303
CVE-2025-67303
Description
An issue in ComfyUI-Manager prior to version 3.38 allowed remote attackers to potentially manipulate its configuration and critical data. This was due to the application storing its files in an insufficiently protected location that was accessible via the web interface
Affected products
1- Range: 2.48.1, 3.10, 3.11, …
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.