openwebui records
155 published records for vendor openwebui.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 97.4%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')23
- CWE-862 Missing Authorization22
- CWE-639 Authorization Bypass Through User-Controlled Key18
- CWE-918 Server-Side Request Forgery (SSRF)15
- CWE-863 Incorrect Authorization12
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')7
The weakness classes this vendor ships most often: where to look.
CWEAll records
155 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2026-44566No exploit | Open WebUI: Arbitrary File Upload and Path Traversalopenwebui · open webui · CWE-22 | Critical9.8 | — | 0.5% | May 15, 2026 |
36Monitor | CVE-2026-44551Proof of concept | Open WebUI: LDAP Empty Password Authentication Bypassopenwebui · open webui · CWE-287 | Critical9.1 | — | 1.6% | May 15, 2026 |
36Monitor | CVE-2024-8017No exploit | Cross-site Scripting (XSS) in open-webui/open-webuiopenwebui · open webui · CWE-79 | Critical9.0 | — | 0.6% | Mar 20, 2025 |
36Monitor | CVE-2026-56400No exploit | open-webui - Remote Code Execution via CORS Misconfiguration and Session Validationopenwebui · open webui · CWE-613 | Critical9.0 | — | 0.5% | Jul 15, 2026 |
36Monitor | CVE-2026-59216No exploit | Open WebUI: Cross-user code-interpreter and tool execution via unvalidated Socket.IO event-caller session_idopenwebui · open webui · CWE-94 | Critical9.0 | — | 0.5% | Jul 9, 2026 |
36Monitor | CVE-2026-59214No exploit | Open WebUI: Stored web worker XSS via Pyodideopenwebui · open webui · CWE-79 | Critical9.0 | — | 0.4% | Jul 9, 2026 |
35Monitor | CVE-2024-6707No exploit | Open WebUI Arbitrary File Upload + Path Traversalopenwebui · open webui · CWE-22 | High8.8 | — | 1.0% | Aug 7, 2024 |
35Monitor | CVE-2024-7043No exploit | Improper Access Control in open-webui/open-webuiopenwebui · open webui · CWE-862 | High8.8 | — | 0.6% | Mar 20, 2025 |
35Monitor | CVE-2026-45672No exploit | Open WebUI: Jupyter code execution works despite `ENABLE_CODE_EXECUTION=false` — feature gate bypassedopenwebui · open webui · CWE-863 | High8.8 | — | 0.6% | May 15, 2026 |
35Monitor | CVE-2026-70482No exploit | Open WebUI: Account takeover via OAuth token exchange accepting tokens issued to any clientopenwebui · open webui · CWE-287 | High8.8 | — | 0.6% | Aug 4, 2026 |
35Monitor | CVE-2024-7044No exploit | Stored XSS in open-webui/open-webuiopenwebui · open webui · CWE-79 | High8.9 | — | 0.5% | Mar 20, 2025 |
34Monitor | CVE-2025-64496No exploit | Open WebUI Affected by an External Model Server (Direct Connections) Code Injection via SSE Eventsopenwebui · open webui · CWE-95 | High8.0 | — | 7.8% | Nov 7, 2025 |
34Monitor | CVE-2026-56398No exploit | Open WebUI - Stored Cross-Site Scripting via OAuth Picture Claim SVG Data URIopenwebui · open webui · CWE-20 | High8.5 | — | 0.6% | Jul 15, 2026 |
34Monitor | CVE-2026-44552No exploit | Open WebUI: Redis Cache Keys tool_servers and terminal_servers Missing Instance Prefix Enable Cross-Instance Cache Poisoningopenwebui · open webui · CWE-668 | High8.7 | — | 0.4% | May 15, 2026 |
34Monitor | CVE-2026-87995No exploit | Open WebUI: Same-origin XSS to account takeover via terminal port-preview iframe hardcoding allow-same-originopenwebui · open webui · CWE-79 | High8.7 | — | 0.4% | Sep 9, 2026 |
34Monitor | CVE-2026-44549No exploit | Open WebUI: Stored XSS in excel file previewopenwebui · open webui · CWE-79 | High8.7 | — | 0.4% | May 15, 2026 |
34Monitor | CVE-2026-45331No exploit | Open WebUI: Full SSRF Vulnerability in the RAG Web Search Featureopenwebui · open webui · CWE-918 | High8.5 | — | 0.3% | May 15, 2026 |
34Monitor | CVE-2026-45400No exploit | Open WebUI: Server-Side Request Forgery (SSRF) bypass in `validate_url`openwebui · open webui · CWE-918 | High8.5 | — | 0.3% | May 15, 2026 |
34Monitor | CVE-2026-45401Proof of concept | Open WebUI: SSRF Bypass via HTTP Redirect Following in Web-Fetch and Image-Load Endpointsopenwebui · open webui · CWE-918 | High8.5 | — | 0.3% | May 15, 2026 |
34Monitor | CVE-2026-54008No exploit | Open WebUI: Redirect-Bypass SSRF in OAuth `_process_picture_url`openwebui · open webui · CWE-918 | High8.5 | — | 0.3% | Jun 23, 2026 |
34Monitor | CVE-2026-45315No exploit | Open WebUI: Stored XSS via attacker-controlled file extension in /api/v1/audio/transcriptionsopenwebui · open webui · CWE-79 | High8.7 | — | 0.2% | May 15, 2026 |
33Monitor | CVE-2026-44570No exploit | Open WebUI: Inconsistent authorization controls within memories APIopenwebui · open webui · CWE-639 | High8.3 | — | 0.4% | May 15, 2026 |
33Monitor | CVE-2026-54010No exploit | Open WebUI: Forged chat-file link allows cross-user file read and deletionopenwebui · open webui · CWE-284 | High8.3 | — | 0.4% | Jun 23, 2026 |
32Monitor | CVE-2024-8053No exploit | Improper Authentication in open-webui/open-webuiopenwebui · open webui · CWE-306 | High8.2 | — | 0.6% | Mar 20, 2025 |
32Monitor | CVE-2026-87016No exploit | Open WebUI: Sign-in as another user via wildcard characters in the OAuth subject claim on SQLiteopenwebui · open webui · CWE-155 | High8.1 | — | 0.6% | Sep 9, 2026 |
- CVE-2026-4456639Monitor
Open WebUI: Arbitrary File Upload and Path Traversal
CriticalCVSS 9.8No exploitEPSS 0%openwebui · open webuiMay 15, 2026
- CVE-2026-4455136Monitor
Open WebUI: LDAP Empty Password Authentication Bypass
CriticalCVSS 9.1Proof of conceptEPSS 2%openwebui · open webuiMay 15, 2026
- CVE-2024-801736Monitor
Cross-site Scripting (XSS) in open-webui/open-webui
CriticalCVSS 9.0No exploitEPSS 1%openwebui · open webuiMar 20, 2025
- CVE-2026-5640036Monitor
open-webui - Remote Code Execution via CORS Misconfiguration and Session Validation
CriticalCVSS 9.0No exploitEPSS 1%openwebui · open webuiJul 15, 2026
- CVE-2026-5921636Monitor
Open WebUI: Cross-user code-interpreter and tool execution via unvalidated Socket.IO event-caller session_id
CriticalCVSS 9.0No exploitEPSS 0%openwebui · open webuiJul 9, 2026
- CVE-2026-5921436Monitor
Open WebUI: Stored web worker XSS via Pyodide
CriticalCVSS 9.0No exploitEPSS 0%openwebui · open webuiJul 9, 2026
- CVE-2024-670735Monitor
Open WebUI Arbitrary File Upload + Path Traversal
HighCVSS 8.8No exploitEPSS 1%openwebui · open webuiAug 7, 2024
- CVE-2024-704335Monitor
Improper Access Control in open-webui/open-webui
HighCVSS 8.8No exploitEPSS 1%openwebui · open webuiMar 20, 2025
- CVE-2026-4567235Monitor
Open WebUI: Jupyter code execution works despite `ENABLE_CODE_EXECUTION=false` — feature gate bypassed
HighCVSS 8.8No exploitEPSS 1%openwebui · open webuiMay 15, 2026
- CVE-2026-7048235Monitor
Open WebUI: Account takeover via OAuth token exchange accepting tokens issued to any client
HighCVSS 8.8No exploitEPSS 1%openwebui · open webuiAug 4, 2026
- CVE-2024-704435Monitor
Stored XSS in open-webui/open-webui
HighCVSS 8.9No exploitEPSS 1%openwebui · open webuiMar 20, 2025
- CVE-2025-6449634Monitor
Open WebUI Affected by an External Model Server (Direct Connections) Code Injection via SSE Events
HighCVSS 8.0No exploitEPSS 8%openwebui · open webuiNov 7, 2025
- CVE-2026-5639834Monitor
Open WebUI - Stored Cross-Site Scripting via OAuth Picture Claim SVG Data URI
HighCVSS 8.5No exploitEPSS 1%openwebui · open webuiJul 15, 2026
- CVE-2026-4455234Monitor
Open WebUI: Redis Cache Keys tool_servers and terminal_servers Missing Instance Prefix Enable Cross-Instance Cache Poisoning
HighCVSS 8.7No exploitEPSS 0%openwebui · open webuiMay 15, 2026
- CVE-2026-8799534Monitor
Open WebUI: Same-origin XSS to account takeover via terminal port-preview iframe hardcoding allow-same-origin
HighCVSS 8.7No exploitEPSS 0%openwebui · open webuiSep 9, 2026
- CVE-2026-4454934Monitor
Open WebUI: Stored XSS in excel file preview
HighCVSS 8.7No exploitEPSS 0%openwebui · open webuiMay 15, 2026
- CVE-2026-4533134Monitor
Open WebUI: Full SSRF Vulnerability in the RAG Web Search Feature
HighCVSS 8.5No exploitEPSS 0%openwebui · open webuiMay 15, 2026
- CVE-2026-4540034Monitor
Open WebUI: Server-Side Request Forgery (SSRF) bypass in `validate_url`
HighCVSS 8.5No exploitEPSS 0%openwebui · open webuiMay 15, 2026
- CVE-2026-4540134Monitor
Open WebUI: SSRF Bypass via HTTP Redirect Following in Web-Fetch and Image-Load Endpoints
HighCVSS 8.5Proof of conceptEPSS 0%openwebui · open webuiMay 15, 2026
- CVE-2026-5400834Monitor
Open WebUI: Redirect-Bypass SSRF in OAuth `_process_picture_url`
HighCVSS 8.5No exploitEPSS 0%openwebui · open webuiJun 23, 2026
- CVE-2026-4531534Monitor
Open WebUI: Stored XSS via attacker-controlled file extension in /api/v1/audio/transcriptions
HighCVSS 8.7No exploitEPSS 0%openwebui · open webuiMay 15, 2026
- CVE-2026-4457033Monitor
Open WebUI: Inconsistent authorization controls within memories API
HighCVSS 8.3No exploitEPSS 0%openwebui · open webuiMay 15, 2026
- CVE-2026-5401033Monitor
Open WebUI: Forged chat-file link allows cross-user file read and deletion
HighCVSS 8.3No exploitEPSS 0%openwebui · open webuiJun 23, 2026
- CVE-2024-805332Monitor
Improper Authentication in open-webui/open-webui
HighCVSS 8.2No exploitEPSS 1%openwebui · open webuiMar 20, 2025
- CVE-2026-8701632Monitor
Open WebUI: Sign-in as another user via wildcard characters in the OAuth subject claim on SQLite
HighCVSS 8.1No exploitEPSS 1%openwebui · open webuiSep 9, 2026