Open WebUI
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 40 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from April 16, 2024 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →Open WebUI: DNS Rebinding SSRF Bypass
Open WebUI: Same-origin XSS to account takeover via terminal file-preview iframe hardcoding allow-same-origin
Open WebUI: Any authenticated user can reach internal services and cloud metadata via NAT64-encoded URLs
Open WebUI - Stored Cross-Site Scripting via OAuth Picture Claim SVG Data URI
open-webui terminal proxy path traversal guard bypass via 9x encoded traversal
Open WebUI: Arena task endpoints can bypass underlying model access controls
Open WebUI: Terminal proxy forwards a spoofable, integrity-unbound user identity to the upstream (X-User-Id header and ws_terminal session_id query injection)
Open WebUI: Model meta.knowledge read-only file access can be upgraded to file write/delete
Open WebUI: `WEB_FETCH_FILTER_LIST` host allow/block filter bypassable via URL path and non-label-boundary matching
Open WebUI: Upload `metadata.knowledge_id` bypasses the knowledge-base write-access check (read-only users can add files to KB)
Monitor Open WebUI in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.