CVE-2026-34222 | open-webui Open WebUI up to 0.8.10 improper authorization (GHSA-7429-hxcv-268m)
A vulnerability was found in open-webui Open WebUI up to 0.8.10. It has been classified as critical. This impacts an unknown function. The manipulation leads to improper authorization.
This vulnerability is uniquely identified as CVE-2026-34222. The attack is possible to be carried out remotely. No exploit exists.
Upgrading the affected component is recommended.