CVE-2026-54015 | open-webui Open WebUI up to 0.9.5 Prompt History resource injection

SecurityVulns

A vulnerability, which was classified as problematic, was found in open-webui Open WebUI. This vulnerability affects unknown code of the component Prompt History. Such manipulation leads to improper control of resource identifiers.

This vulnerability is traded as CVE-2026-54015. The attack may be launched remotely. There is no exploit available.

You should upgrade the affected component.VulDB Recent EntriesRead More