CVE-2024-7033 | open-webui up to 0.3.8 on Windows download_model path traversal
A vulnerability, which was classified as problematic, was found in open-webui up to 0.3.8 on Windows. This affects the function download_model. The manipulation leads to path traversal: '\..\filename'.
This vulnerability is uniquely identified as CVE-2024-7033. It is possible to initiate the attack remotely. There is no exploit available.