CVE-2026-44565PoC(openwebui / open_webui)

LOWCVSS 8.1 · HIGH

Exploit discussion active in current signal (2 latest mentions)

Immediate actions

  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.6.10, when uploading an audio file, the name of the file is derived from the original HTTP upload request and is not validated or sanitized. This allows for users to upload files with names containing dot-segments in the file path and traverse out of the intended uploads directory. Effectively, users can upload files anywhere on the filesystem the user running the web server has permission. This vulnerability is fixed in 0.6.10.

1.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-22

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • open_webui

Threat summary

  • Public PoC is present in monitored signal
  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Technical details provided in 2 signals
  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • Peaked at 2 mentions on most recent observed day (2026-05-16)
  • 3 total mentions across 2 days

Affected systems

Vendors
Products
open_webui

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-05-15: 1Mentions · 2026-05-16: 2PoC Mentioned / Linked · 2026-05-15: 1Technical Details · 2026-05-15: 1Technical Details · 2026-05-16: 105-1505-16
Signal classification3 categories
PoC
133.3%
Disclosure
133.3%
General
133.3%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-05-151
PoC1
2026-05-162
Disclosure1General1
Full discourse3 posts
  • Hephaestvs@Vulcanux_
    PoC

    csirt_it: ‼ #Open WebUI: disponibile #PoC per lo sfruttamento della CVE-2026-44565 Rischio: 🟠 Tipologia: 🔸 Arbitrary File Write/Delete 🔗https://www.acn.gov.it/portale/en/w/open-webui-poc-pubblico-per-lo-sfruttamento-della-cve-2026-44565 🔄 Aggiornamenti disponibili 🔄 https://t.co/P2YzypQoyW

    Post summary

    A PoC for CVE-2026-44565 (Arbitrary File Write/Delete) is available via a link, with no indications of active exploitation or patching.

    0002185
    622 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-44565 Path Traversal in Open WebUI Prior to Version 0.6.10 via Unsanitized Aud... https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-44565 Vulnerability Notification: https://alerts.vulmon.com/?utm_source=twitter&utm_medium=social&utm_campaign=2102281&utm_content=3

    Post summary

    CVE-2026-44565 is a path traversal vulnerability in Open WebUI, announced via a notification link, but no PoC, exploit, or patch information is provided.

    0000081
    4.0K followersView on X
  • CVE@CVEnew
    General

    CVE-2026-44565 Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.6.10, when uploading an audio file, the name of the file… https://www.cve.org/CVERecord?id=CVE-2026-44565

    Post summary

    The text references CVE-2026-44565 in the context of a pre-0.6.10 upload issue in Open WebUI but provides no detailed exploit, patch, or technical information.

    00000141
    57.5K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appopenwebuiopen_webui---

Explore more