CVE-2026-70489 | Open WebUI up to 0.10.x Automation automations.py infinite loop

SecurityVulns

A vulnerability was found in Open WebUI up to 0.10.x and classified as problematic. This affects an unknown part of the file backend/open_webui/utils/automations.py of the component Automation. Such manipulation leads to infinite loop.

This vulnerability is referenced as CVE-2026-70489. It is possible to launch the attack remotely. No exploit is available.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More