CVE-2026-56398 | open-webui Open WebUI up to 0.9.4 Profile Image Validator cross site scripting
A vulnerability has been found in open-webui Open WebUI up to 0.9.4 and classified as problematic. The impacted element is an unknown function of the component Profile Image Validator. Performing a manipulation results in cross site scripting.
This vulnerability is identified as CVE-2026-56398. The attack can be initiated remotely. There is not any exploit available.VulDB Recent EntriesRead More