{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/cpes/cpe2.3acomfyuicomfyui/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:comfyui:comfyui:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":7.8,"id":"CVE-2026-92816"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["ComfyUI (\u003c 0.30.0)"],"_cs_severities":["high"],"_cs_tags":["web-vulnerability","path-traversal","cve-2026-92816"],"_cs_type":"advisory","_cs_vendors":["ComfyUI"],"content_html":"\u003cp\u003eComfyUI versions before 0.30.0 contain a critical path traversal vulnerability (CVE-2026-92816) within its dataset save nodes. The application fails to properly sanitize the 'folder_name' parameter, which is used to define the destination directory for saved files. By providing a crafted 'folder_name' string containing directory traversal sequences, an authenticated or remote attacker can escape the intended output directory and write files to arbitrary locations on the host filesystem. This vulnerability is particularly dangerous in the context of ComfyUI, as an attacker with the ability to write files to the filesystem can overwrite critical startup scripts, configuration files, or package initialization modules. Successful exploitation leads to arbitrary code execution within the security context of the ComfyUI process. Users are advised to upgrade to version 0.30.0 or later to mitigate this risk.\u003c/p\u003e\n\u003ch2 id=\"attack-chain\"\u003eAttack Chain\u003c/h2\u003e\n\u003col\u003e\n\u003cli\u003eAttacker identifies a target instance of ComfyUI running a version earlier than 0.30.0.\u003c/li\u003e\n\u003cli\u003eAttacker crafts a malicious workflow containing a dataset save node configuration.\u003c/li\u003e\n\u003cli\u003eAttacker sets the 'folder_name' parameter in the dataset save node to include directory traversal sequences (e.g., ../../../).\u003c/li\u003e\n\u003cli\u003eAttacker uploads or executes the crafted workflow within the ComfyUI interface.\u003c/li\u003e\n\u003cli\u003eComfyUI backend processes the 'folder_name' input without sanitization.\u003c/li\u003e\n\u003cli\u003eThe application performs a file write operation to the destination path specified by the traversal sequences.\u003c/li\u003e\n\u003cli\u003eAttacker overwrites a system-level startup script or Python package initialization file with malicious code.\u003c/li\u003e\n\u003cli\u003eUpon restart of the ComfyUI service or specific process execution, the malicious code is triggered, resulting in code execution.\u003c/li\u003e\n\u003c/ol\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eThe vulnerability carries a CVSS v3.1 base score of 7.8. Successful exploitation allows for arbitrary file write, which facilitates full system compromise via code execution. This impacts any organization or individual running vulnerable versions of ComfyUI in environments where the service is accessible to untrusted parties.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003ePrioritized actions for security teams:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003ePatch ComfyUI: Upgrade all instances to version 0.30.0 or later immediately to address CVE-2026-92816.\u003c/li\u003e\n\u003cli\u003eReview Audit Logs: Investigate webserver logs for requests involving dataset save nodes that contain non-alphanumeric characters or path traversal sequences like '../'.\u003c/li\u003e\n\u003cli\u003eRestrict Access: Ensure ComfyUI instances are not exposed to the public internet and restrict access to authenticated, trusted users only.\u003c/li\u003e\n\u003cli\u003ePrinciple of Least Privilege: Run the ComfyUI service under a dedicated, low-privileged user account to limit the impact of potential code execution scenarios.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-09-16T21:58:20Z","date_published":"2026-09-16T21:58:20Z","id":"https://feed.craftedsignal.io/briefs/2026-09-comfyui-path-traversal/","summary":"ComfyUI versions prior to 0.30.0 are vulnerable to path traversal via unsanitized input in dataset save nodes, allowing attackers to write arbitrary files and potentially achieve code execution.","title":"Path Traversal in ComfyUI Dataset Save Nodes","url":"https://feed.craftedsignal.io/briefs/2026-09-comfyui-path-traversal/"}],"language":"en","title":"CraftedSignal Threat Feed - Cpe:2.3:a:comfyui:comfyui:*:*:*:*:*:*:*:*","version":"https://jsonfeed.org/version/1.1"}