|
551
|
7.6 |
HIGH
Network
|
openwebui
|
open_webui
|
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.0, Open WebUI supports model composition via base_model_id: a user-defined model (e.g.,…
Update
|
CWE-862
Missing Authorization
|
CVE-2026-44555
|
2026-05-19 12:12 |
2026-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
552
|
8.1 |
HIGH
Network
|
openwebui
|
open_webui
|
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.0, the POST /api/v1/retrieval/process/web endpoint accepts a user-supplied collection_n…
Update
|
CWE-862
Missing Authorization
|
CVE-2026-44554
|
2026-05-19 12:12 |
2026-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
553
|
5.0 |
MEDIUM
Network
|
openwebui
|
open_webui
|
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.0, FolderForm uses model_config = ConfigDict(extra='allow'), which permits arbitrary fi…
Update
|
CWE-862
Missing Authorization
|
CVE-2026-44550
|
2026-05-19 12:12 |
2026-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
554
|
5.4 |
MEDIUM
Network
|
openwebui
|
open_webui
|
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.0, the ydoc:document:update Socket.IO event handler checks whether the sender is a memb…
Update
|
CWE-863
Incorrect Authorization
|
CVE-2026-44564
|
2026-05-19 12:11 |
2026-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
555
|
5.4 |
MEDIUM
Network
|
openwebui
|
open_webui
|
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.0, the /api/generate, /api/embed, /api/embeddings, and /api/show endpoints accept any m…
Update
|
CWE-862
Missing Authorization
|
CVE-2026-44563
|
2026-05-19 12:11 |
2026-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
556
|
6.5 |
MEDIUM
Network
|
openwebui
|
open_webui
|
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.0, the POST /api/v1/models/import endpoint allows users with the workspace.models_impor…
Update
|
CWE-283 CWE-862
Unverified Ownership Missing Authorization
|
CVE-2026-44562
|
2026-05-19 12:10 |
2026-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
557
|
5.4 |
MEDIUM
Network
|
openwebui
|
open_webui
|
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.0, the is_user_channel_member function checks whether a ChannelMember row exists but do…
Update
|
CWE-863
Incorrect Authorization
|
CVE-2026-44561
|
2026-05-19 12:10 |
2026-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
558
|
6.5 |
MEDIUM
Network
|
openwebui
|
open_webui
|
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.0, the type: "file" (non-full-context), type: "text" with collection_name, and bare col…
Update
|
CWE-862
Missing Authorization
|
CVE-2026-44560
|
2026-05-19 12:09 |
2026-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
559
|
4.3 |
MEDIUM
Network
|
openwebui
|
open_webui
|
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.0, the GET /api/v1/channels/{id}/members endpoint only checks membership for group and …
Update
|
CWE-862
Missing Authorization
|
CVE-2026-44559
|
2026-05-19 12:09 |
2026-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
560
|
8.0 |
HIGH
Network
|
openwebui
|
open_webui
|
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.0, any authenticated user can permanently delete files owned by other users via DELETE …
Update
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2026-45671
|
2026-05-19 12:08 |
2026-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|