CVE-2026-54020 | open-webui Open WebUI up to 0.10.x URL Validation server-side request forgery
A vulnerability categorized as problematic has been discovered in open-webui Open WebUI up to 0.10.x. This vulnerability affects unknown code of the component URL Validation. Executing a manipulation can lead to server-side request forgery.
This vulnerability is registered as CVE-2026-54020. It is possible to launch the attack remotely. No exploit is available.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More