CVE-2026-70485High· 7.1▾ TwilightOpen WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.0 until 0.11.0, Open WebUI checked whether a user-supplied URL destination was globally routable by applying ipaddress.is_global to the litera…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 39.1 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Aug 5.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
0.2%
Last analysed / modified upstream
0.2% → 0.2%
Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.0 until 0.11.0, Open WebUI checked whether a user-supplied URL destination was globally routable by applying ipaddress.is_global to the literal IPv6 address without examining IPv4 addresses embedded in transition encodings. On a deployment with a NAT64 gateway, any verified user could wrap an internal or cloud-metadata IPv4 address in the NAT64 well-known prefix, pass the filter, and receive the internal response body through RAG URL ingestion, URL-to-markdown conversion, or web-search content retrieval. This issue is fixed in 0.11.0.
open_webui >= 0.9.0, < 0.11.0Upgrade past the affected range:
open_webui 0.11.0Affected packages:
open-webui >= 0.9.0, < 0.11.0Patched in:
open-webui 0.11.0Connected by shared product, vendor, weakness, or advisory.
CVE-2026-70480Medium· 4.1Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform
CVE-2026-54020Medium· 6.3Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform
CVE-2026-70479High· 7.7Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform
CVE-2026-87996High· 7.7Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform
CVE-2026-70489Medium· 6.5Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform
CVE-2026-70491Medium· 6.5Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform