Invokeai
This hub aggregates every CVE we track for Invokeai, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
6
CVEs tracked
3
Critical
2
High
0
In CISA KEV
Severity distribution
CRITICAL3HIGH2MEDIUM1
Monthly trend
0
0
0
0
0
0
0
4
0
0
0
0
0
1
0
0
0
0
0
0
0
0
0
1
2024-082026-07
Latest CVEs
The 6 most recently published vulnerabilities affecting Invokeai.
- CVE-2026-65012InvokeAI < 6.13.7 Unauthenticated Directory Enumeration via scan_folder5.3
- CVE-2025-6237Path Traversal and Arbitrary File Deletion in invoke-ai/invokeai9.8
- CVE-2024-11043Denial of Service (DoS) via Large Payload in Board Name Field in invoke-ai/invokeai7.5
- CVE-2024-10821Denial of Service (DoS) in invoke-ai/invokeai7.5
- CVE-2024-11042Arbitrary File Delete in invoke-ai/invokeai9.1
- CVE-2024-12029Remote Code Execution via Model Deserialization in invoke-ai/invokeai9.8
Product normalization is registry-driven with AI assist and human review. How it works