← back
CVE-2025-67303highobserved exploitationCWE-420

CVE-2025-67303

58Vexday Risk Score

Patch now. It exploitation observed by VulnCheck and has a working public exploit.

ssvc Actcvss 7.5epss 1.4%
from disclosure to weapon
Published on NVDJan 5
VulnCheck+131d
exploitation probability
1.4%top 29% of all CVEs
observed exploitation
yesVulnCheck
An issue in ComfyUI-Manager prior to version 3.38 allowed remote attackers to potentially manipulate its configuration and critical data. This was due to the application storing its files in an insufficiently protected location that was accessible via the web interface
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Affected products
n/a · n/a