Cross-site scripting in Open WebUI - #VU152709
Published: September 28, 2026
Vulnerability details
The vulnerability allows a remote user to steal session tokens and gain administrative control of the instance.
The vulnerability exists due to improper neutralization of input during web page generation in the DOCX preview component when rendering a crafted DOCX attachment in Preview view. A remote user can upload a crafted DOCX document containing active content to execute script in the viewer's authenticated browser session and steal the viewer's session token.
User interaction is required to open a shared chat, open the attachment, and switch to Preview view.