Aidc Ai · Comfyui-Copilot · CVE-2026-13493
**Name of the Vulnerable Software and Affected Versions**
AIDC-AI ComfyUI-Copilot versions prior to 2.0.29
**Description**
A flaw exists in the Workflow Checkpoint Restore Handler component within the file `backend/controller/conversation api.py`. This issue involves improper control of resource identifiers, which can be exploited remotely. The attack is characterized by high complexity and is considered difficult to execute.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.