Vulnerability Description
Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.5.0 until 0.11.0, the standard channel message update and delete handlers accepted any caller holding write access on the channel without checking that the caller wrote the message. Because write access is the same grant a member needs to post, any ordinary participant in a shared standard channel could rewrite or permanently delete another participant message, while group and direct message handlers enforced authorship. This issue is fixed in 0.11.0.
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
- https://github.com/open-webui/open-webui/commit/c609ec41154fa092fa0af80d9d365de0
- https://github.com/open-webui/open-webui/pull/27197
- https://github.com/open-webui/open-webui/releases/tag/v0.11.0
- https://github.com/open-webui/open-webui/security/advisories/GHSA-mj5r-jf49-m3w7
FAQ
What is CVE-2026-70481?
CVE-2026-70481 is a vulnerability with a CVSS score of 5.4 (MEDIUM). Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.5.0 until 0.11.0, the standard channel message update and delete handlers accepted any caller holding write...
How severe is CVE-2026-70481?
CVE-2026-70481 has been rated MEDIUM with a CVSS base score of 5.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-70481?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.