Blind Server-Side Request Forgery in Open WebUI Affecting Self-Hosted AI Platforms
CVE-2026-45347
4.3MEDIUM
What is CVE-2026-45347?
A vulnerability exists in Open WebUI versions prior to 0.5.11, where the PDF generation feature allows for a blind server-side request forgery (SSRF). While most unsafe tags are blocked, an attacker can exploit this through an image tag, initiating unintended requests to the server. This poses a risk of exposing sensitive server-side resources. The issue has been addressed in version 0.5.11, ensuring a more secure PDF export process.
Affected Version(s)
open-webui < 0.5.11
