Cross-site scripting in Open WebUI - #VU152713
Published: September 28, 2026
Vulnerability details
The vulnerability allows a remote user to execute arbitrary script in another user's session.
The vulnerability exists due to improper neutralization of input during web page generation in the Citations.svelte showSourceModal citation click handler when a victim opens a shared read-only chat and clicks a citation. A remote user can store a javascript: URL in a chat citation and share the chat to execute arbitrary script in another user's session.
Only the citation-embed click path is affected.