Incorrect authorization in Open WebUI - #VU152707
Published: September 28, 2026
Vulnerability details
The vulnerability allows a remote user to disclose file contents and delete files.
The vulnerability exists due to incorrect authorization in the has_access_to_file access-control function when handling file-content and delete requests for files removed from knowledge bases. A remote user can request file content or delete a file using a known file ID to disclose file contents and delete files.
Exploitation requires that the file was last processed into the shared knowledge base, remains on the instance after removal, and that the owner removes it from that knowledge base.