Missing CSP on comfyView and ungated Terminal bridge escalate frontend XSS to remote code execution
HighComfyUI Desktop rendered the ComfyUI frontend with no Content-Security-Policy while the preload exposed an unguarded shell bridge, so any script execution in the frontend origin escalated to arbitrary commands on the host.
- Advisory
- GHSA-83m9-jm26-mm4c
- Affected
- ComfyUI Desktop <= 1.0.34
- Patched
- >= 1.0.35
- Credit
- Finder — Comfy-Org/Comfy-Desktop
- Published
CWE-693 CWE-749