Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
2242498
AlmaLinux
5975
Alpaquita
16176
Alpine
4655
Android
3708
Azure Linux
17971
BellSoft Hardened Containers
770
Bitnami
9501
Chainguard
1048512
CleanStart
5432
CRAN
14
crates.io
2768
Debian
68992
Echo
7853
GHC
3
GIT
109121
GitHub Actions
55
Go
9332
Hackage
33
Hex
365
Julia
1713
Linux
29975
Mageia
6237
Maven
7055
MinimOS
148643
npm
229266
NuGet
1869
opam
29
openEuler
8900
openSUSE
14647
OSS-Fuzz
4019
Packagist
7103
Pub
11
PyPI
25495
Red Hat
23535
Rocky Linux
4344
Root
19644
RubyGems
5369
SUSE
23455
SwiftURL
61
TuxCare
9974
Ubuntu
66090
VSCode
21
Wolfi
293807
ID
Packages
Summary
Published
arrow_upward
Attributes
PYSEC-2026-4129
PyPI/open-webui
Open WebUI: Users denied by the OAuth role policy can still sign in via token exchange
4 days ago
Fix available
Severity - 6.5 (Medium)
PYSEC-2026-4117
PyPI/open-webui
Open WebUI: Unauthenticated requests can stall the server via uncached OIDC fetches in back-channel logout
4 days ago
Fix available
Severity - 7.5 (High)
PYSEC-2026-4126
PyPI/open-webui
Open WebUI: Any authenticated user can suppress calendar alerts instance-wide via a non-numeric alert value
4 days ago
Fix available
Severity - 4.3 (Medium)
PYSEC-2026-4121
PyPI/open-webui
Open WebUI: Any authenticated user can start a non-terminating request via a folder parent cycle
4 days ago
Fix available
Severity - 4.3 (Medium)
PYSEC-2026-4127
PyPI/open-webui
Open WebUI: Admin demoted through SSO role sync keeps read and write access to all users' notes
4 days ago
Fix available
Severity - 6.5 (Medium)
PYSEC-2026-4124
PyPI/open-webui
Open WebUI: A user's session cookies are sent to tool servers configured for bearer authentication
4 days ago
Fix available
Severity - 6.8 (Medium)
PYSEC-2026-4128
PyPI/open-webui
Open WebUI: Sign-in as another user via wildcard characters in the OAuth subject claim on SQLite
4 days ago
Fix available
Severity - 8.1 (High)
PYSEC-2026-4125
PyPI/open-webui
Open WebUI: Inaccessible knowledge bases are exposed through the built-in knowledge tool on most vector backends
4 days ago
Fix available
Severity - 4.3 (Medium)
PYSEC-2026-4122
PyPI/open-webui
Open WebUI: Channel members can overwrite another member's message via the chat completions endpoint
4 days ago
Fix available
Severity - 4.3 (Medium)
PYSEC-2026-4123
PyPI/open-webui
Open WebUI: Same-origin XSS to account takeover via terminal port-preview iframe hardcoding allow-same-origin
4 days ago
Fix available
Severity - 8.7 (High)
PYSEC-2026-4120
PyPI/open-webui
Open WebUI: SSRF into internal services via DNS rebinding in the Playwright web loader
4 days ago
Fix available
Severity - 7.7 (High)
PYSEC-2026-4118
PyPI/open-webui
Open WebUI: Any authenticated user can inject chats into another user's folder via chat completions
4 days ago
Fix available
Severity - 4.3 (Medium)
PYSEC-2026-4115
PyPI/open-webui
Open WebUI: Non-admin users can delete admin-owned external knowledge connections via knowledge base deletion
4 days ago
Fix available
Severity - 7.1 (High)
PYSEC-2026-4116
PyPI/open-webui
Open WebUI: Any authenticated user can reach the Azure platform channel via server-side web fetch
4 days ago
Fix available
Severity - 7.1 (High)
PYSEC-2026-4119
PyPI/open-webui
Open WebUI: Users denied by the OAuth domain allowlist or role policy can still sign in via token exchange
4 days ago
Fix available
Severity - 6.5 (Medium)
GHSA-wvm9-9g5j-623f
PyPI/open-webui
Open WebUI: Users denied by the OAuth role policy can still sign in via token exchange
10 Sep
Fix available
Severity - 6.5 (Medium)
Load more...
PyPI - OSV