
CVE-2026-6589 A security vulnerability has been detected in ComfyUI up to 0.13.0. This affects the function create_origin_only_middleware of the file http://server.py. The manipulation lead… https://www.cve.org/CVERecord?id=CVE-2026-6589
Post summary
A new vulnerability, CVE‑2026‑6589, has been identified in ComfyUI up to version 0.13.0, affecting the create_origin_only_middleware function in server.py. No proof of concept, exploit code, patch, or active exploitation is mentioned.

