CVE-2026-6591: ComfyUI LoadImage Node folder_paths.py folder_paths.get_annotated_filepath path traversal
A flaw has been found in ComfyUI up to 0.13.0. Affected is the function folderpaths.getannotatedfilepath of the file folderpaths.py of the component LoadImage Node. This manipulation of the argument Name causes path traversal. Remote exploitation of the attack is possible. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-6591?
CVE-2026-6591 has been rated with a severity level that indicates it poses a moderate risk to affected systems.
How do I fix CVE-2026-6591?
To fix CVE-2026-6591, upgrade ComfyUI to version 0.14.0 or higher, where the vulnerability has been addressed.
What components are affected by CVE-2026-6591?
CVE-2026-6591 affects the LoadImage Node component, specifically the folder_paths.get_annotated_filepath function in folder_paths.py.
What is the impact of CVE-2026-6591?
The impact of CVE-2026-6591 allows attackers to exploit path traversal vulnerabilities, potentially accessing unauthorized files and directories.
Who is the vendor of the affected software for CVE-2026-6591?
The vendor of the affected software for CVE-2026-6591 is ComfyUI.