CVE-2026-45351 | open-webui Open WebUI up to 0.8.8 Web Request information disclosure (GHSA-jh9g-8jqw-m2qx / WID-SEC-2026-1542)
A vulnerability has been found in open-webui Open WebUI up to 0.8.8 and classified as problematic. Affected is an unknown function of the component Web Request Handler. This manipulation causes information disclosure.
This vulnerability is tracked as CVE-2026-45351. The attack is possible to be carried out remotely. No exploit exists.
The affected component should be upgraded.