openwebui
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 140 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from April 16, 2024 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →open-webui - Remote Code Execution via CORS Misconfiguration and Session Validation
Open WebUI - Stored Cross-Site Scripting via OAuth Picture Claim SVG Data URI
open-webui terminal proxy path traversal guard bypass via 9x encoded traversal
Open WebUI: Arena task endpoints can bypass underlying model access controls
Open WebUI: Terminal proxy forwards a spoofable, integrity-unbound user identity to the upstream (X-User-Id header and ws_terminal session_id query injection)
Open WebUI: Model meta.knowledge read-only file access can be upgraded to file write/delete
Open WebUI: `WEB_FETCH_FILTER_LIST` host allow/block filter bypassable via URL path and non-label-boundary matching
Open WebUI: /api/v1/channels/{id}/members exposes full user model including sensitive credentials
Open WebUI: Private channel messages can be disclosed through cross-channel thread parent_id binding
Open WebUI: Cross-user model-list exposure via static cache key in get_all_models (aiocache key= vs key_builder= misuse)
Monitor openwebui in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.