CVE-2026-59216 | open-webui Open WebUI up to 0.9.x Socket.IO Event get_event_call session_id user session
A vulnerability classified as critical was found in open-webui Open WebUI up to 0.9.x. Affected is the function get_event_call of the component Socket.IO Event Handler. The manipulation of the argument session_id results in manage user sessions.
This vulnerability is cataloged as CVE-2026-59216. The attack may be launched remotely. There is no exploit available.VulDB Recent EntriesRead More