Improper access control in Open WebUI - CVE-2026-45387
Published: May 11, 2026
Vulnerability details
The vulnerability allows a remote user to disclose sensitive information.
The vulnerability exists due to improper access control in the /api/v1/models/model endpoint when handling requests for model details by id. A remote user can send a request for a shared model identifier to disclose sensitive information.
The issue exposes the model's system prompt to users who were granted read access for model use.