CVE-2026-59219
Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.0 before 0.10.0 with Redis configured, Socket
CVSS
7.1
Alto
EPSS
0.3%
p17
KEV
—
Exploit Today
5
0-100
Publicado: 9 jul 2026 · Última mod.: 10 jul 2026 · CWE-613
0.3%EPSS · 30 días0.3%
2026-07-102026-07-20
Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.0 before 0.10.0 with Redis configured, Socket.IO connect, user-join, join-channels, join-note, and the terminal websocket first-message authentication used decode_token without the Redis-backed is_valid_token revocation check, allowing revoked JWTs to continue authenticating realtime connections. This issue is fixed in version 0.10.0.
- github.comhttps://github.com/open-webui/open-webui/commit/33b91bd8ae8a100a5a306c91441a7d0b422c4cde
- github.comhttps://github.com/open-webui/open-webui/releases/tag/v0.10.0
- github.comhttps://github.com/open-webui/open-webui/security/advisories/GHSA-855v-hq7w-jmjw
- github.comhttps://github.com/open-webui/open-webui/security/advisories/GHSA-855v-hq7w-jmjw
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2022-255906.5 MED66.8%
——20SurveyKing v0.2.0 was discovered to retain users' session cookies after logout, allowing attackers to login to the system and access data using the browser cache when the user exits the application.12dCVE-2022-361799.8 CRÍ56.8%
——17Fusiondirectory 1.3 suffers from Improper Session Handling.12dCVE-2022-415425.4 MED45.4%
——14devhub 0.102.0 was discovered to contain a broken session control.12dCVE-2026-443837.5 ALT43.1%
——13Multiple connections to the backend using the same charging station ID
are allowed, which could allow an attacker to deploy multiple instances
of malicious OCPP clients to overwhelm the backend.8dCVE-2022-346245.9 MED40.4%
——12Mealie1.0.0beta3 does not terminate download tokens after a user logs out, allowing attackers to perform a man-in-the-middle attack via a crafted GET request.12dCVE-2026-492298.3 ALT35.8%
——11Actual is a local-first personal finance app. Prior to 26.6.0, in OpenID multi-user mode, disabling a user only blocks future OpenID login for that identity, while existing Actual session tokens for the disabled user remain valid. The shared session validation path accepts any existing token row that has not expired without checking whether the associated user is still enabled, allowing a disabled user to continue calling authenticated server endpoints. This issue is fixed in version 26.6.0.12d