CVE-2026-54015
MEDIUM SEVERITYCVSS Score & Metrics
Base Score
6.4 / 10
Vulnerability Description
Open WebUI Prompt history IDOR: unbound history_id allows cross-prompt read and deletion
Vulnerability Details
Published Date
Last Modified
Source
GitHub
Vendor
pip
Product
open-webui
Discussion (0)
Add Comment
No comments yet. Be the first!