CVE-2026-56398: Open WebUI - Stored Cross-Site Scripting via OAuth Picture Claim SVG Data URI

Published Jul 15, 2026
·
Updated

Open WebUI before 0.9.5 contains a stored cross-site scripting vulnerability in the OAuth authentication flow where the picture claim URL MIME type is inferred from file extension rather than Content-Type header, allowing SVG files to bypass the profile image validator and be stored as data URIs. Authenticated users who visit the profile image endpoint receive attacker-controlled SVG content with inline disposition and no default security headers, enabling script execution in the same origin to steal authentication tokens and achieve account takeover.

Affected Software

2 affected components
Open WebUI Open WebUI<0.9.5
openwebui Open WebUI<0.9.5

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Upgrade

    Upgrade Open WebUI to a version that resolves this vulnerability.

    Fixed in 0.9.5
  2. Configuration

    Modify the OAuth picture claim flow so the picture claim URL MIME type is inferred from the HTTP Content-Type header rather than the file extension, preventing SVG files from bypassing the profile image validator and being stored as data URIs.

    Open WebUI (OAuth picture claim handling) MIME type inference source = Infer from the Content-Type header (not file extension)

Event History

Jul 15, 2026
CVE Published
via MITRE·11:25 AM
Data Sourced
via MITRE·11:25 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·12:18 PM
DescriptionSeverityWeaknessAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2026-56398?

The severity of CVE-2026-56398 is high with a score of 8.5.

2

How do I fix CVE-2026-56398?

To fix CVE-2026-56398, upgrade to Open WebUI version 0.9.5 or later.

3

What types of attacks could exploit CVE-2026-56398?

CVE-2026-56398 can be exploited for stored cross-site scripting (XSS) attacks through malicious SVG data URIs.

4

What software is affected by CVE-2026-56398?

CVE-2026-56398 affects Open WebUI versions before 0.9.5.

5

How does CVE-2026-56398 occur?

CVE-2026-56398 occurs because the picture claim URL MIME type is derived from the file extension, allowing SVG files to bypass validation.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203