Remote Code Execution in Open WebUI AI Platform
CVE-2026-70492

8.7HIGH

Key Information:

Vendor

Open-webui

Vendor
CVE Published:
4 August 2026

What is CVE-2026-70492?

A vulnerability in Open WebUI allows attackers to execute arbitrary code through stored chat messages. Specifically, from versions 0.10.0 to 0.11.0, the platform fails to properly handle mathematical blocks, resulting in a stack overflow rather than a parse error. This oversight allows malicious scripts embedded in chat messages to execute in the browsers of users viewing those messages, potentially allowing session tokens stored in localStorage to be stolen. Administrators could face account takeovers as a result. The issue has been addressed in version 0.11.0 of Open WebUI.

Affected Version(s)

open-webui >= 0.10.0, < 0.11.0

References

CVSS V3.1

Score:
8.7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.