
🚨 I found a critical SSRF in Open WebUI (CVE-2026-45401) It had: URL validation (including outbound IP checks) ✅ And it still allowed access to internal infrastructure. The issue? Validation happens before redirects — but execution happens after. → SSRF via redirect chaining → Access to cloud metadata (169.254.169.254) → Potential credential exposure This class of bugs will keep showing up in AI platforms too. Full writeup 👇 https://medium.com/@chinmohannayak/breaking-ai-platforms-how-an-ssrf-in-open-webui-enabled-internal-network-access-cve-2026-45401-dbffc30295fc #Cybersecurity #AISecurity #AppSec #LLM
Post summary
A critical SSRF vulnerability (CVE‑2026‑45401) in Open WebUI bypasses URL validation and allows internal network access via redirect chaining, with a detailed Medium article linked for more information.

