CVE-2026-70492 | open-webui Open WebUI up to 0.10.x KaTeX Renderer KatexRenderer.svelte cross site scripting

SecurityVulns

A vulnerability was found in open-webui Open WebUI up to 0.10.x. It has been classified as problematic. This vulnerability affects unknown code of the file src/lib/components/chat/Messages/Markdown/KatexRenderer.svelte of the component KaTeX Renderer. Performing a manipulation results in cross site scripting.

This vulnerability is identified as CVE-2026-70492. The attack can be initiated remotely. There is not any exploit available.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More