Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.0, the type: "file" (non-full-context), type: "text" with collection_name, and bare collection_name/collection_names paths in the get_sources_from_items function perform vector store queries without any authorization check, allowing users to extract content from files and knowledge bases they do not have access to. This vulnerability is fixed in 0.9.0.
References
| Link | Resource |
|---|---|
| https://github.com/open-webui/open-webui/security/advisories/GHSA-h36f-rqpx-j5wx | Exploit Vendor Advisory |
Configurations
History
19 May 2026, 03:09
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://github.com/open-webui/open-webui/security/advisories/GHSA-h36f-rqpx-j5wx - Exploit, Vendor Advisory | |
| CPE | cpe:2.3:a:openwebui:open_webui:*:*:*:*:*:*:*:* | |
| First Time |
Openwebui
Openwebui open Webui |
15 May 2026, 20:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-05-15 20:16
Updated : 2026-05-19 03:09
NVD link : CVE-2026-44560
Mitre link : CVE-2026-44560
CVE.ORG link : CVE-2026-44560
JSON object : View
Products Affected
openwebui
- open_webui
CWE
CWE-862
Missing Authorization
