Authorization bypass through user-controlled key in Open WebUI - #VU130958
Published: May 11, 2026
Open WebUI
Open WebUI
Description
The vulnerability allows a remote user to disclose sensitive information.
The vulnerability exists due to authorization bypass through a user-controlled key in the folder knowledge ingestion and knowledge-base file attach endpoints when processing a user-supplied file_id without verifying access to the referenced file. A remote user can attach another user's file to a folder or knowledge base they control to disclose sensitive information.
Knowledge of the target file UUID is required, and the knowledge-base attach path can also enable modification of the attached file's content.