Cross-Site Request Forgery Vulnerability in Open WebUI by Open WebUI
CVE-2026-54007
What is CVE-2026-54007?
Open WebUI, an artificial intelligence platform designed for offline use, is susceptible to a cross-site request forgery vulnerability. Prior to version 0.9.6, the chat message listener allows for non-same-origin messages to trigger actions within an authenticated user session. An attacker can exploit this flaw by sending crafted messages from an external site, resulting in unauthorized execution of POST requests to create new chat messages and completions using user privileges without consent. This could lead to unapproved model executions and misuse of the user's session, posing a significant threat to the integrity of user interactions within the platform. The vulnerability has been addressed in the subsequent release, 0.9.6.
Affected Version(s)
open-webui < 0.9.6
