CVE-2026-54020 | open-webui Open WebUI up to 0.10.x URL Validation server-side request forgery

SecurityVulns

A vulnerability categorized as problematic has been discovered in open-webui Open WebUI up to 0.10.x. This vulnerability affects unknown code of the component URL Validation. Executing a manipulation can lead to server-side request forgery.

This vulnerability is registered as CVE-2026-54020. It is possible to launch the attack remotely. No exploit is available.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More