CVE-2025-65958 | open-webui Open WebUI up to 0.6.36 server-side request forgery (GHSA-c6xv-rcvw-v685)
A vulnerability categorized as critical has been discovered in open-webui Open WebUI up to 0.6.36. This vulnerability affects unknown code. Such manipulation leads to server-side request forgery.
This vulnerability is referenced as CVE-2025-65958. It is possible to launch the attack remotely. No exploit is available.
It is advisable to upgrade the affected component.