← back
CVE-2026-70481mediumCWE-284CWE-862

Open WebUI: Any member with write access to a standard channel can edit or delete other members' messages

33Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendcvss 5.4epss 0.3%
from disclosure to weapon0 days
Published on NVDAug 4
1st PoCAug 4
exploitation probability
0.3%top 78% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.5.0 until 0.11.0, the standard channel message update and delete handlers accepted any caller holding write access on the channel without checking that the caller wrote the message. Because write access is the same grant a member needs to post, any ordinary participant in a shared standard channel could rewrite or permanently delete another participant message, while group and direct message handlers enforced authorship. This issue is fixed in 0.11.0.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
Affected products
open-webui · open-webui
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.