CVE-2026-34222
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to version 0.8.
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to version 0.8.11, there is a broken access control vulnerability in tool values. This issue has been patched in version 0.8.11.
HIGH · CVSS 7.7
EPSS 0.00014
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0