Bounties
Partners
Community
Info
open-webui / open-webui
Project repository
User-friendly AI Interface (Supports Ollama, OpenAI API, ...)
Submit a report
FIRST INTERACTION
WITHIN
N/A DAYS
REVIEW
WITHIN
21 DAYS
FIX
WITHIN
N/A DAYS
Model file upload involves path traversal(/ollama/models/upload)
Mar 11th 2025
kyo-w
•
duplicate
Critical
User can bypass chat deletion prevention by deleting chat folder instead
Mar 13th 2025
bober182
•
pending
Stored XSS in due get_html_file_content_by_id function lead to Privilage Esclati...
Dec 12th 2024
omidxrz
•
duplicate
High
Data leakage occurs due to CORS misconfiguration
Nov 25th 2024
glmgbj233
•
duplicate
High
Forced downloading of database by Client-Side Path Traversal
Dec 20th 2024
szarny
•
informative
Medium
Improper Access control to edit another user controls
Dec 20th 2024
ralph13
•
informative
Medium
Concurrent Login
Dec 18th 2024
ralph13
•
spam
Denial of service through memory exhaustion
Jan 20th 2025
patrik-ha
•
High
•
$600
High
•
$600
•
CVE-2024-12868
CVE-2024-12868
Code Injection
Dec 18th 2024
quyenheu
•
duplicate
Critical
Denial of service through code-formatting endpoint
Jan 14th 2025
patrik-ha
•
duplicate
High
Denial of Service (DoS) Due to No Character Limit on Email and Password Fields D...
Jan 9th 2025
mnqazi
•
High
•
$600
High
•
$600
•
CVE-2024-12534
CVE-2024-12534
Unauthenticated Denial of Service `api/v1/utils/code/format`
Jan 9th 2025
mnqazi
•
High
•
$600
High
•
$600
•
CVE-2024-12537
CVE-2024-12537
Unauthenticated Multipart Boundary Denial of Service (DoS) Vulnerability Across...
Dec 11th 2024
mnqazi
•
High
•
$600
High
•
$600
•
CVE-2024-9840
CVE-2024-9840
Privilege escalation in Allow Chat Editing
Sep 18th 2024
hainguyen0207
•
informative
Medium
Privilege escalation in Admin Panel - Chats
Nov 27th 2024
hainguyen0207
•
duplicate
Medium
IDOR in chats
Nov 21st 2024
hainguyen0207
•
informative
High
Stored XSS in model's response allows attacker to steal API token.
Nov 17th 2024
keeper772
•
duplicate
High
Cross User File Access
Nov 11th 2024
jamoski3112
•
duplicate
Medium
Stored XSS In File Uploads
Nov 7th 2024
jamoski3112
•
duplicate
High
Blind SSRF To Internal Port Scan
Aug 21st 2024
minhquan202
•
informative
Medium
Remote code execution caused by pipeline feature in open-webui
Aug 21st 2024
startr4ck
•
self closed
Admin User Can Delete/Update Information of Other Admin Users
Aug 21st 2024
0xanis
•
informative
High
Unauthorized File Access and Deletion
Nov 4th 2024
0xanis
•
duplicate
Critical
open-webui race competion upload
Nov 3rd 2024
muzai
•
duplicate
High
Stored XSS in Functions Funding URL metadata
Aug 21st 2024
rook1337
•
informative
Medium
Unauthorized users can delete files and reset databases in OpenWeb UI, greatly a...
Oct 31st 2024
startr4ck
•
duplicate
High
File upload traversal Causing RCE Delete/replace any file
Oct 29th 2024
startr4ck
•
duplicate
High
Low Privilege is able to Update memory of admin users
Oct 29th 2024
rook1337
•
duplicate
Medium
Stealing Open_API Key through SSRF in open-webui v0.3.10 (latest)
Oct 28th 2024
bugdisclose
•
duplicate
Medium
Administrator permission Remote command execution
Aug 21st 2024
jiang-niao
•
informative
High
RCE: While uploading the GGUF model, leads to Create/Overwrite any system files....
Oct 25th 2024
mnqazi
•
duplicate
High
Broken Access Control
Aug 21st 2024
githubuser843205
•
informative
Medium
No Authentication at `api/v1/utils/pdf` endpoint, can leads to unauthenticated D...
Oct 25th 2024
mnqazi
•
High
•
$600
High
•
$600
•
CVE-2024-8053
CVE-2024-8053
Delete All The Uploaded Files via Missing Authorization
Oct 22nd 2024
0xe2d0
•
duplicate
High
Unrestricted File upload through /transcriptions endpoint
Oct 21st 2024
rook1337
•
duplicate
Medium
CSRF at `api_key` endpoint, leads to reveal the user API key
Oct 20th 2024
mnqazi
•
duplicate
Medium
Unauthorized Modification of User Memory
Oct 19th 2024
dan-xzero
•
duplicate
High
Unauthorized Access and Deletion of User Chats
Oct 19th 2024
dan-xzero
•
duplicate
High
Unauthorized Workspace Access
Oct 8th 2024
dan-xzero
•
not applicable
Path traversal case arbitrary *py file delete in open-webui
Oct 17th 2024
n0el4kls
•
duplicate
High
XSS to Account Takeover
Oct 17th 2024
williwollo
•
duplicate
Critical
SSRF in many endpoints
Jul 23rd 2024
nduy2110
•
informative
Critical
Stored XSS
Oct 15th 2024
nduy2110
•
duplicate
Critical
Base64 Data URI XSS in Profile Picture Functionality
Aug 19th 2024
saimanikanta1992
•
duplicate
High
File upload leads to Stored XSS
Oct 14th 2024
0xe2d0
•
duplicate
High
Unauthen Information disclosure
Aug 20th 2024
nduy2110
•
informative
Medium
(RBAC issue) Any user can delete the files uploaded by the other users, includin...
Oct 14th 2024
mnqazi
•
duplicate
High
CORS misconfiguration leads to data leak
Oct 14th 2024
mnqazi
•
duplicate
High
Data leak through CORS misconfiguration
Oct 13th 2024
dan-xzero
•
duplicate
Medium
Any user can read files uploaded by other users, including the admin
Oct 13th 2024
mnqazi
•
duplicate
High
Stored XSS via file upload, can affect admin
Oct 13th 2024
mnqazi
•
duplicate
Critical
CSRF lead to Reset Vector Storage, DB, Uploads
Oct 13th 2024
meme-dm
•
duplicate
Medium
Server-Side Request Forgery (SSRF) Vulnerability
Jul 23rd 2024
dan-xzero
•
duplicate
Critical
Server-Side Template Injection (SSTI) in Chat Description Field
Oct 8th 2024
dan-xzero
•
not applicable
Server Side Request Forgery (SSRF) in open-webui / open-webui
Oct 8th 2024
virusday
•
not applicable
Stored XSS via file upload
Oct 12th 2024
web-hacker-team
•
duplicate
Critical
Remote Code Execution
Aug 19th 2024
mvlttt
•
informative
Critical
Arbitrary file write to RCE
Oct 12th 2024
mvlttt
•
duplicate
High
Server-Side Request Forgery SSRF
Aug 21st 2024
mvlttt
•
informative
Critical
Arbitrary file delete
Oct 12th 2024
mvlttt
•
duplicate
High
XSS via chat information tooltip
Oct 12th 2024
lambdasawa
•
Critical
•
$1200
Critical
•
$1200
•
CVE-2024-8017
CVE-2024-8017
Stored Cross Site Scripting in model description Due to Sanitization Bypass
Oct 12th 2024
m0kr4n3
•
High
•
$600
High
•
$600
•
CVE-2024-7990
CVE-2024-7990
Unrestricted File Upload Leading to XSS and Other Attacks in Chat
Oct 11th 2024
dan-xzero
•
duplicate
Critical
Unauthorized Access to Uploaded Files by Any User
Oct 11th 2024
dan-xzero
•
duplicate
Medium
Cross-Site Scripting (XSS) via Unsanitized Profile Image URL in Registration
Aug 15th 2024
dan-xzero
•
informative
Critical
SSRF Vulnerability Allowing Internal Service Enumeration
Jul 23rd 2024
saimanikanta1992
•
duplicate
High
Denial of Service in multipart/form-data while uploading a file in chat
Oct 11th 2024
srivallikusumba
•
High
•
$600
High
•
$600
•
CVE-2024-7999
CVE-2024-7999
CSRF to Delete Uploaded Rag Files
Oct 11th 2024
zpbrent
•
duplicate
High
Delete arbitrary files via file upload (/ollama/models/upload)
Oct 11th 2024
pyozzi-toss
•
duplicate
Medium
RCE by Non-Admin Users via CSRF
Oct 11th 2024
lambdasawa
•
High
•
$600
High
•
$600
•
CVE-2024-7806
CVE-2024-7806
Directory Removal Without Confirmation
Aug 20th 2024
syed-ghufran-hassan
•
spam
Zero-Click Unauthenticated ( < 0.3.6 ) RCE via path traversal
Oct 11th 2024
patchyst
•
duplicate
Critical
SSRF in /openai/models
Oct 11th 2024
ouxs-19
•
High
•
$600
High
•
$600
•
CVE-2024-7959
CVE-2024-7959
Stored XSS via file upload
Oct 10th 2024
lambdasawa
•
duplicate
Critical
CSRF on endpoints due to overly permissive CORS headers
Oct 10th 2024
patrik-ha
•
duplicate
High
Administrator Account Takeover via Lax Session Cookie
Oct 10th 2024
mblunt
•
High
•
$600
High
•
$600
•
CVE-2024-7053
CVE-2024-7053
Users can view the content of uploaded files in other people's chats
Oct 10th 2024
hainguyen0207
•
duplicate
Medium
SSRF Controlled Race Condition leading to RCE in Pipeline Upload API
Aug 19th 2024
mblunt
•
informative
Medium
Stored XSS in file upload
Oct 10th 2024
ouxs-19
•
duplicate
Critical
Denial of service through endpoint for converting markdown
Oct 10th 2024
patrik-ha
•
High
•
$600
High
•
$600
•
CVE-2024-7983
CVE-2024-7983
Arbitrary file overwrite by model upload
Oct 10th 2024
patrik-ha
•
duplicate
High
Low Privilege user can upload documents in Workspace document upload feature
Oct 10th 2024
rook1337
•
duplicate
Medium
Store Open Redirect at Profile Image
Jul 23rd 2024
hainguyen0207
•
informative
Medium
CSRF leads to reset memories
Oct 10th 2024
ngductung
•
duplicate
Medium
DDOS and SSRF at Images URL Update endpoint
Jul 23rd 2024
rook1337
•
duplicate
Medium
No Rate limiting on Login page leads to credentials bruteforce
Jul 23rd 2024
rook1337
•
informative
Medium
IDOR view+delete all file in aplication
Oct 10th 2024
duongli99
•
duplicate
High
Improper access control-allow view any prompts
Oct 10th 2024
fewword
•
Medium
•
$100
Medium
•
$100
•
CVE-2024-7045
CVE-2024-7045
Improper access control-allow view any tools info
Aug 20th 2024
fewword
•
informative
High
Token returned when the user account logs in - with Role as Pending. Waiting for...
Oct 10th 2024
hainguyen0207
•
Medium
•
$100
Medium
•
$100
•
CVE-2024-7049
CVE-2024-7049
Security issue in session
Aug 14th 2024
hainguyen0207
•
informative
High
Improper access control-allow view any functions info
Aug 20th 2024
fewword
•
informative
Medium
•
CVE-2024-7051
CVE-2024-7051
Improper access control-allow view/delete any files
Oct 10th 2024
fewword
•
High
•
$600
High
•
$600
•
CVE-2024-7043
CVE-2024-7043
Stored XSS via upload file in chat
Oct 10th 2024
ngductung
•
Medium
•
$100
Medium
•
$100
•
CVE-2024-7044
CVE-2024-7044
Arbitrary file writing lead to Remote Code Execution
Oct 10th 2024
j0ok34n
•
duplicate
Critical
Improper access control-allow view admin details
Oct 10th 2024
fewword
•
Medium
•
$100
Medium
•
$100
•
CVE-2024-7046
CVE-2024-7046
IDOR- allow to update any memory
Oct 10th 2024
fewword
•
duplicate
High
Limited SSRF via Speech-to-Text Engine Configuration
Jul 23rd 2024
mblunt
•
informative
Medium
Privilege Escalation Vulnerability to update default model
Jul 23rd 2024
fewword
•
informative
Medium
Arbitrary File Delete
Oct 10th 2024
vn-ncvinh
•
duplicate
Critical
RCE in OpenWebUI v0.3.0 via Arbitrary File Upload
Oct 10th 2024
mblunt
•
High
•
$600
High
•
$600
•
CVE-2024-8060
CVE-2024-8060
Use weak passwords
Jul 23rd 2024
duongli99
•
informative
Medium
CSRF_reset db
Oct 10th 2024
duongli99
•
duplicate
Medium
CSRF in /rag/api/v1/reset
Oct 10th 2024
j0ok34n
•
duplicate
High
CSRF in /rag/api/v1/reset/uploads
Oct 10th 2024
vn-ncvinh
•
duplicate
High
Path traversal leads to create and overwrite any file
Oct 10th 2024
fewword
•
duplicate
High
Arbitrary .py File Deletion via Path Traversal
Oct 10th 2024
vn-ncvinh
•
duplicate
High
Remote Code Execution through Model Upload
Oct 10th 2024
lismaps
•
duplicate
High
IDOR via API endpoints GET /api/v1/documents/ and POST /rag/api/v1/doc for Admin...
Oct 10th 2024
zpbrent
•
Medium
•
$100
Medium
•
$100
•
CVE-2024-7048
CVE-2024-7048
Improper access control-allow delete any admin (owner) account
Oct 10th 2024
fewword
•
duplicate
High
Path traversal leads to create and overwrite any file
Oct 10th 2024
fewword
•
duplicate
High
Path traversal leads to create and overwrite any file
Oct 10th 2024
fewword
•
duplicate
High
SSRF vulnerability
Jul 23rd 2024
fewword
•
informative
Medium
Improper access control-allow to view the chats of any admin (owner) account
Oct 9th 2024
fewword
•
Medium
•
$100
Medium
•
$100
•
CVE-2024-7040
CVE-2024-7040
Arbitrary file write on windows instances
Oct 9th 2024
codevigilanteofficial
•
duplicate
Medium
Path traversal in embedding_model
Oct 9th 2024
dastaj
•
duplicate
Low
Arbitrary .py file delete leading to DoS
Oct 9th 2024
codevigilanteofficial
•
duplicate
High
Remote Code Execution due to Arbitrary File Write
Oct 9th 2024
m0kr4n3
•
Medium
•
$100
Medium
•
$100
•
CVE-2024-7034
CVE-2024-7034
Arbitary File Write leading into Remote Code Execution when deployed in Windows
Oct 9th 2024
m0kr4n3
•
Medium
•
$100
Medium
•
$100
•
CVE-2024-7033
CVE-2024-7033
Sensitive actions performed using GET
Oct 9th 2024
dastaj
•
Medium
•
$100
Medium
•
$100
•
CVE-2024-7035
CVE-2024-7035
IDOR Edit Personalization Memory
Oct 9th 2024
hainguyen0207
•
Medium
•
$100
Medium
•
$100
•
CVE-2024-7041
CVE-2024-7041
Arbitrary file write/delete lead to RCE
Oct 9th 2024
ouxs-19
•
Medium
•
$100
Medium
•
$100
•
CVE-2024-7037
CVE-2024-7037
Denial of Service in Admin Panel Prevents Admin from Editing, Adding, or Deletin...
Oct 9th 2024
mnqazi
•
High
•
$600
High
•
$600
•
CVE-2024-7036
CVE-2024-7036
File Name enumeration leads to information disclosure
Oct 9th 2024
rook1337
•
Low
•
$15
Low
•
$15
•
CVE-2024-7038
CVE-2024-7038
Delete administrators - The requested action has been restricted as a security m...
Oct 9th 2024
hainguyen0207
•
High
•
$600
High
•
$600
•
CVE-2024-7039
CVE-2024-7039
CRITICAL
$0
HIGH
$0
MEDIUM
$0
LOW
$0