Permission Bypass in Open WebUI Affects Tool Management Capabilities
CVE-2026-45395
7.2HIGH
What is CVE-2026-45395?
Open WebUI, an offline artificial intelligence platform, contains a vulnerability in its update endpoint prior to version 0.9.5. The flaw allows unauthorized users, denied tool management permissions, to alter server-side Python code of tools instead of replicating the security checks performed during tool creation. This unauthorized access can lead to untrusted code execution, compromising the security model intended for tool management within the platform. The vulnerability was addressed in version 0.9.5, improving protection against such unauthorized changes.
Affected Version(s)
open-webui < 0.9.5
