CVE-2026-88000 | Open WebUI up to 0.11.0 Chat History Deletion Helper chats.py infinite loop
A vulnerability described as problematic has been identified in Open WebUI up to 0.11.0. This vulnerability affects unknown code of the file backend/open_webui/models/chats.py of the component Chat History Deletion Helper. The manipulation results in infinite loop.
This vulnerability is known as CVE-2026-88000. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is recommended.VulDB Recent EntriesRead More