Skip to content
Open WebUIGHSA-5jp3-wp5v-5363

Open WebUI Stored Cross-Site Scripting Vulnerability

Medium6.1CVE-2024-6706 · Published Aug 8, 2024 · updated Jul 7, 2026

Attackers can craft a malicious prompt that coerces the language model into executing arbitrary JavaScript in the context of the web page.

GitHub advisory

Affected versions

PackageAffectedFixed in
open-webui
PyPI
<= 0.1.105No fix yet
Details and references
CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Severity from
GitHub (reviewed advisory)
Weakness
CWE-79
Also known as
CVE-2024-6706, PYSEC-2026-1722

More Open WebUI advisories

All Open WebUI
Advisory
Open WebUI Uncontrolled Resource Consumption vulnerability
High7.5Mar 20, 2025
Open WebUI has vulnerable dependency on starlette via fastapi
High7.5Mar 20, 2025
Open WebUI Uncontrolled Resource Consumption vulnerability
High7.5Mar 20, 2025
Open WebUI Uncontrolled Resource Consumption vulnerability
High7.5Mar 20, 2025
open-webui Insecure Direct Object Reference (IDOR) vulnerability
Medium6.5Oct 9, 2024
open-webui allows writing and deleting arbitrary files
Medium6.5Oct 9, 2024

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.