Authorization bypass through user-controlled key in Open WebUI - #VU130956
Published: May 11, 2026
Open WebUI
Open WebUI
Description
The vulnerability allows a remote user to read and modify another user's private knowledge base content and cause a denial of service.
The vulnerability exists due to authorization bypass through user-controlled key in the retrieval API endpoints when handling knowledge base collection names supplied as raw UUIDs. A remote user can send specially crafted retrieval API requests using a target knowledge base UUID to read private content, inject attacker-controlled content, or overwrite the knowledge base.
Exploitation requires an authenticated non-admin account and knowledge of a target knowledge base UUID.