Description
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to version 0.8.11, there is a broken access control vulnerability in tool values. This issue has been patched in version 0.8.11.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-7429-hxcv-268m | Open WebUI has Broken Access Control in Tool Valves |
References
History
Wed, 01 Apr 2026 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to version 0.8.11, there is a broken access control vulnerability in tool values. This issue has been patched in version 0.8.11. | |
| Title | Open WebUI has Broken Access Control in Tool Valves | |
| Weaknesses | CWE-285 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-04-01T17:02:21.846Z
Reserved: 2026-03-26T15:57:52.324Z
Link: CVE-2026-34222
No data.
Status : Received
Published: 2026-04-01T18:16:29.850
Modified: 2026-04-01T18:16:29.850
Link: CVE-2026-34222
No data.
OpenCVE Enrichment
No data.
Weaknesses
Github GHSA