Cross-Site Request Forgery Vulnerability in Open WebUI by Open WebUI
CVE-2026-54007

7.1HIGH

Key Information:

Vendor

Open-webui

Vendor
CVE Published:
23 June 2026

What is CVE-2026-54007?

Open WebUI, an artificial intelligence platform designed for offline use, is susceptible to a cross-site request forgery vulnerability. Prior to version 0.9.6, the chat message listener allows for non-same-origin messages to trigger actions within an authenticated user session. An attacker can exploit this flaw by sending crafted messages from an external site, resulting in unauthorized execution of POST requests to create new chat messages and completions using user privileges without consent. This could lead to unapproved model executions and misuse of the user's session, posing a significant threat to the integrity of user interactions within the platform. The vulnerability has been addressed in the subsequent release, 0.9.6.

Affected Version(s)

open-webui < 0.9.6

References

CVSS V4

Score:
7.1
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.