Skip to content
Critical RCE Vulnerability in ComfyUI v0.23.0 (CVE-2026-68771)

Critical RCE Vulnerability in ComfyUI v0.23.0 (CVE-2026-68771)

First seen 2 Aug 2026, 08:52 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster August 3, 2026 at 06:03 UTC
  • CVE-2026-68771 allows unauthenticated RCE in ComfyUI v0.23.0 via unsafe deserialization.
  • Attackers can upload malicious pickle files to execute arbitrary code as the ComfyUI process user.
  • A patch is available, and it is crucial to implement access controls on affected endpoints.

ComfyUI v0.23.0 has a critical remote code execution vulnerability (CVE-2026-68771) due to unsafe deserialization in the LoadTrainingDataset node. Unauthenticated remote attackers can exploit this flaw by uploading a malicious pickle file through the /upload/image endpoint and executing arbitrary Python code. The vulnerability allows attackers to control the ComfyUI process user and execute system commands. As of now, there is no evidence of exploitation in the wild, and no public proof-of-concept exists. A patch has been released, and users are advised to update to the latest version. Network-level access controls are recommended to restrict access to vulnerable endpoints. The CVSS base score for this vulnerability is 9.8, indicating its critical nature.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 47d ago How this analysis works

Timeline

2026-07-31
CVE-2026-68771 published
The vulnerability in ComfyUI v0.23.0 was officially published, detailing the risks of unsafe deserialization.
osv.dev
2026-08-01
Security advisory released
A security advisory was issued, confirming the critical nature of the vulnerability with a CVSS score of 9.8 and recommending immediate updates.
Feedly
Recent
No evidence of exploitation found
As of the latest reports, there is no evidence of the vulnerability being actively exploited in the wild.
Feedly

More articles in this cluster (3)

Following this threat?

Track CVE-2026-68771 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed