Broken Object Level Authorization in Open WebUI Platform
CVE-2026-54016
4.3MEDIUM
What is CVE-2026-54016?
An issue exists in Open WebUI, prior to version 0.9.6, where the built-in search_knowledge_files tool suffers from a Broken Object Level Authorization (BOLA) flaw. This vulnerability arises when the native function calling is enabled and the model lacks knowledge bases. Authenticated users can exploit this weakness to invoke search_knowledge_files with an arbitrary knowledge_id, without proper access control checks. As a result, this allows the unauthorized enumeration of private or restricted knowledge base file metadata, posing a significant security risk to sensitive data.
Affected Version(s)
open-webui < 0.9.6
