PT-2026-59381 · Pypi · Open-Webui
Publicado
2026-07-13
·
Atualizado
2026-07-13
CVSS v3.1
6.5
Média
| Vetor | AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N |
Vulnerability Description
In standard channels (i.e., channels whose
channel.type is neither group nor dm), the endpointPOST /api/v1/channels/{channel id}/messages/{message id}/update can be accessed with read permission only.When
access control is set to None, the authorization check has access(..., type="read") evaluates to True, allowing users who are not the message owner to update messages.As a result, unauthorized modification of other users’ messages is possible.
Attack Prerequisites
- The attacker is an authenticated user (role
useror higher) - The target channel is a standard channel (i.e., not
groupordm) access controlisNoneor allowsreadaccess- The attacker can obtain the target
message id(e.g., via the channel’s message list)
Attack Scenario
- The attacker (User B) retrieves another user’s
message idfrom the message list in a standard channel - The attacker sends a request to
POST /api/v1/channels/{channel id}/messages/{message id}/update- The message authored by another user (User A) is successfully updated
Potential Impact
- Unauthorized modification of other users’ messages (violation of data integrity)
Steps to Reproduce
- Log in as an administrator
- Create User A
- Create User B
- Log in as User A
- Log in as User B
- As the administrator, create a new channel
- As User A, post a new message in the channel
- As User B, edit User A’s message
- Confirm that User A’s message has been modified without authorization
Affected Files and Line Numbers
-
backend/open webui/routers/channels.py:1417–1460The authorization check inupdate message by idallows access with read permission -
backend/open webui/utils/access control.py:124–135Whenaccess control=Noneandstrict=True, read access is permitted -
backend/open webui/models/messages.py:341–358The update logic does not enforce any message ownership check
Recommended Mitigation
Update the condition in
backend/open webui/routers/channels.py:1451–1456by changing the permission check from
read to write, so that only administrators, message owners, or users with write permission can update messages.Proposed Changes
-
For standard channels, change the update permission requirement from
has access(..., type="read")tohas access(..., type="write") -
Preserve the existing ownership check (
message.user id == user.id)
AI Usage
- Translation from Japanese to English
- CWE classification and assessment
- Affected Files and Line Numbers
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Open-Webui