CVE-2026-87015 | Open WebUI up to 0.11.0 Tool Connection tools.py infinite loop
A vulnerability categorized as problematic has been discovered in Open WebUI up to 0.11.0. The impacted element is an unknown function of the file backend/open_webui/utils/tools.py of the component Tool Connection. The manipulation results in infinite loop.
This vulnerability is reported as CVE-2026-87015. The attack can be launched remotely. No exploit exists.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More