CVE-2026-70491 | Open WebUI up to 0.10.2 ToolUserResponse tools.py information disclosure
A vulnerability marked as problematic has been reported in Open WebUI up to 0.10.2. The affected element is an unknown function of the file backend/open_webui/routers/tools.py of the component ToolUserResponse. This manipulation causes information disclosure.
This vulnerability appears as CVE-2026-70491. The attack may be initiated remotely. There is no available exploit.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More