CVE-2026-70493 | Open WebUI up to 0.10.x Built-in Knowledge Search Path builtin.py incorrect regex
A vulnerability described as problematic has been identified in Open WebUI up to 0.10.x. The impacted element is an unknown function of the file backend/open_webui/tools/knowledge_fs.py/backend/open_webui/tools/builtin.py of the component Built-in Knowledge Search Path. Such manipulation leads to incorrect regular expression.
This vulnerability is traded as CVE-2026-70493. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is recommended.VulDB Recent EntriesRead More