Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Openwebui

First CVE: Apr 16, 2024Active for: 2 yearsTotal CVEs: 134
46.3
VTI Score
High

Open WebUI is an open-source interface and orchestration layer for large language models and AI services that has become prominent in enterprise and research deployments, despite maintaining a narrowly scoped product line. The vendor's vulnerability profile concentrates in the single Open WebUI application and clusters around web application and authorization weaknesses—cross-site scripting, missing or bypassable authorization checks, and server-side request forgery—that are characteristic of user-facing applications handling authentication and untrusted user input. These weakness classes reflect the attack surface of a web-facing service that bridges user requests to backend AI models and external services, where input validation and access-control enforcement are critical to maintaining isolation between user sessions and preventing lateral movement. Defenders should monitor this vendor's releases closely given the sensitive nature of the data and model access it typically guards, and should treat authorization and input-handling fixes as high-priority in environments where the application sits ahead of production workloads. Current severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
134
Total CVEs
More Total CVEs than 99% of tracked vendors
44.7
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 100% of tracked vendors
6.7
Avg CVSS Score
Higher Avg CVSS Score than 43% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Openwebui over time

Volume of CVEsAvg CVSS Base Score
First CVE
Apr 16, 2024
2 years ago
Most Recent CVE
Jul 15, 2026
10 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (134 CVEs).

134 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2026-44551CRITICAL
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.0, the LDAP authentication endpoint does not validate that the submi
May 15, 20269.147NOYES
CVE-2026-56400CRITICAL
open-webui before 0.3.14 contains a cross-origin resource sharing misconfiguration allowing arbitrary origins with allow_origins=* and authenticated requests to the /api/v1/functio
Jul 15, 20269.639NONO
CVE-2026-0766HIGH
Open WebUI load_tool_module_by_id Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installati
Jan 23, 20268.839NONO
CVE-2026-56398CRITICAL
Open WebUI before 0.9.5 contains a stored cross-site scripting vulnerability in the OAuth authentication flow where the picture claim URL MIME type is inferred from file extension
Jul 15, 20269.037NONO
CVE-2026-59216CRITICAL
Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. Prior to 0.10.0, get_event_call delivered execute:python and execute:tool Socket.IO events to
Jul 9, 20269.037NONO
CVE-2026-59214CRITICAL
Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. Prior to 0.10.0, Open WebUI runs client-side Python with Pyodide in a same-origin web worker,
Jul 9, 20269.037NONO
CVE-2026-54008HIGH
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.6, backend/open_webui/utils/oauth.py::_process_picture_url calls val
Jun 23, 20268.535NONO
CVE-2026-44566CRITICAL
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.1.124, when attaching files to a promp, the name of the file is derive
May 15, 20269.835NONO
CVE-2025-64496HIGH
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Versions 0.6.224 and prior contain a code injection vulnerability in the Direct C
Nov 8, 20258.034NONO
CVE-2026-59224HIGH
Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. Prior to 0.10.0, backend/open_webui/routers/terminals.py built the ws_terminal upstream URL fr
Jul 9, 20268.033NONO
View all 134 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products134 CVEs
51%
41%
Severity distribution among all CVEs352,708 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local0 (0.0%)
Network133 (99.3%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network1 (0.7%)
Attack Complexity
Low126 (94.0%)
High8 (6.0%)
Unknown0 (0.0%)
User Interaction
None100 (74.6%)
Unknown0 (0.0%)
Required34 (25.4%)
Privileges Required
Low108 (80.6%)
High8 (6.0%)
None18 (13.4%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (134 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
2 CVEs
1.5% of CVEs· 95th percentile
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Openwebui.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Openwebui — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Openwebui's Products

View all 6 CNAs →

Top CWEs