Skip to content
Open WebUIGHSA-gj27-76gq-5v3p

Open WebUI stored cross-site scripting (XSS) vulnerability

High8.4CVE-2024-7990 · Published Mar 20, 2025 · updated Jul 7, 2026

GitHub advisory

Affected versions

PackageAffectedFixed in
open-webui
PyPI
<= 0.3.8No fix yet
Details and references

A stored cross-site scripting (XSS) vulnerability exists in open-webui/open-webui version 0.3.8. The vulnerability is present in the `/api/v1/models/add` endpoint, where the model description field is improperly sanitized before being rendered in chat. This allows an attacker to inject malicious scripts that can be executed by any user, including administrators, potentially leading to arbitrary code execution.

CVSS 3.0
CVSS:3.0/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H
Severity from
GitHub (reviewed advisory)
Weakness
CWE-79
Also known as
CVE-2024-7990, PYSEC-2026-1734

More Open WebUI advisories

All Open WebUI
DateAdvisory
Mar 202025Open WebUI Uncontrolled Resource Consumption vulnerability
CVE-2024-12537High7.5no fix yet
Mar 202025Open WebUI Uncontrolled Resource Consumption vulnerability
CVE-2024-12534High7.5no fix yet
Mar 202025Open WebUI has vulnerable dependency on starlette via fastapi
GHSA-w466-2wfc-8g58High7.5no fix yet
Mar 202025Open WebUI Vulnerable to Cross-Site Scripting (XSS) via Chat File Upload
CVE-2024-7044Medium6.8no fix yet
Mar 202025Open WebUI Allows Arbitrary File Reading and Deletion
CVE-2024-7043High8.1no fix yet
Mar 202025Open WebUI Uncontrolled Resource Consumption vulnerability
CVE-2024-7036High7.5no fix yet

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.