Impact
The vulnerability to retrieve full user model objects via the GET /api/v1/channels/{id}/members endpoint. The returned data includes nested sensitive settings such as tool server keys and webhook configurations, which expose credentials and privileged information. This data leakage could compromise the confidentiality of users and enable attackers to leverage exposed tokens or keys for further exploitation. The weakness is identified as information disclosure (CWE-200).
Affected Systems
Open WebUI version 0.7.0 through 0.9.x (any release prior to 0.10.0) is affected. The issue exists on the open-webui:open-webui product as documented by the CNA.
Risk and Exploitability
The CVSS score of 6 indicates moderate severity. EPSS score is < 1%, indicating a very low probability of exploitation. The vulnerability is not listed in CISA KEV, but the exposure of credentials could still be operationally significant if an attacker gains authenticated channel‑member access. The attack vector is inferred to be remote, is exposed over to view channel members.
OpenCVE Enrichment
Github GHSA