PT-2026-67859 · Unknown · Open-Webui
CVE-2026-70491
·
Published
2026-08-04
·
Updated
2026-08-10
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Open WebUI versions prior to 0.11.0
Description
Authenticated non-admin users with read-only access can obtain the full Python source code of server-side tools shared with them. This occurs because the response models permitted extra fields, allowing omitted source data to be re-admitted and serialized in the response. This exposure can lead to the disclosure of sensitive information commonly embedded in tool source code, such as hard-coded API keys, credentials, and internal service URLs.
The issue affects the following API endpoints:
- '/api/v1/tools/'
- '/api/v1/tools/list'
- '/api/v1/tools/id/{id}'
Recommendations
Update Open WebUI to version 0.11.0.
Exploit
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Open-Webui