PT-2026-67859 · Unknown · Open-Webui

CVE-2026-70491

·

Published

2026-08-04

·

Updated

2026-08-10

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Open WebUI versions prior to 0.11.0
Description Authenticated non-admin users with read-only access can obtain the full Python source code of server-side tools shared with them. This occurs because the response models permitted extra fields, allowing omitted source data to be re-admitted and serialized in the response. This exposure can lead to the disclosure of sensitive information commonly embedded in tool source code, such as hard-coded API keys, credentials, and internal service URLs.
The issue affects the following API endpoints:
  • '/api/v1/tools/'
  • '/api/v1/tools/list'
  • '/api/v1/tools/id/{id}'
Recommendations Update Open WebUI to version 0.11.0.

Exploit

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-70491
GHSA-3R7G-Q6CG-Q2VX
PYSEC-2026-3639

Affected Products

Open-Webui