Impact
ComfyUI versions prior to 0.30.0 fail to sanitize the folder_name parameter used in dataset save nodes, allowing an attacker to supply a crafted workflow that writes arbitrary files outside the intended output directory. The ability to write to system files can be leveraged to modify startup scripts or package initializers, thereby enabling the execution of attacker-controlled code.
Affected Systems
The affected product is Comfy-Org's ComfyUI, all releases before 0.30.0. No specific patch versions are listed, but versions earlier than 0.30.0 are known to be vulnerable.
Risk and Exploitability
The CVSS score of 8.5 indicates a high severity vulnerability, while the EPSS score of less than 1% suggests a low expected exploitation rate. The vulnerability is not listed in the CISA KEV catalog. Based on the description, it is inferred that the attacker must deliver a crafted workflow to a user running ComfyUI, which may require local access or the UI to be exposed over a network. Successful exploitation would enable the attacker to create or overwrite files on the host, potentially leading to remote code execution if system files or startup scripts are modified.
OpenCVE Enrichment