CVE-2026-45314
Severity CVSS v4.0:
HIGH
Type:
Unavailable / Other
Publication date:
15/05/2026
Last modified:
18/05/2026
Description
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.3, the channel webhook create/update flow accepts arbitrary profile_image_url values, including data:image/svg+xml;base64,... payloads. The profile image endpoint then decodes and serves this SVG as image/svg+xml without sanitization, allowing attacker-controlled script handlers (for example onload) to execute when the profile-image URL is opened in the browser. This vulnerability is fixed in 0.9.3.
Impact
Base Score 4.0
7.40
Severity 4.0
HIGH
Base Score 3.x
6.10
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:openwebui:open_webui:*:*:*:*:*:*:*:* | 0.9.3 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



