CVE-2026-59714
HIGH SEVERITYCVSS Score & Metrics
Base Score
7.1 / 10
Vulnerability Description
Open WebUI: Cross-channel message overwrite via chat completion API (single-model and multimodel message_ids)
Vulnerability Details
Published Date
Last Modified
Source
GitHub
Vendor
pip
Product
open-webui
External References
- https://github.com/open-webui/open-webui/security/advisories/GHSA-x2ff-v5v8-m75m
- https://github.com/open-webui/open-webui/commit/33e4e0dcc43afcca80f9c635d762cdc76c768ba9
- https://github.com/open-webui/open-webui/commit/ac3449cac91e62b08a7c28e54fcd044d14dea791
- https://github.com/open-webui/open-webui/releases/tag/v0.10.0
- https://github.com/advisories/GHSA-x2ff-v5v8-m75m
Discussion (0)
Add Comment
No comments yet. Be the first!