Information disclosure in Open WebUI - #VU152704
Published: September 28, 2026
Vulnerability details
The vulnerability allows a remote user to disclose tool source code and embedded sensitive information.
The vulnerability exists due to improper authorization in the GET /api/v1/tools/export endpoint when exporting tools shared with the user with read-only access. A remote user can request a bulk tool export to disclose tool source code and embedded sensitive information.
The issue occurs when plugins are enabled.