CVE-2025-46571 - CVE House
Back to Database
Status published Medium CVE-2025-46571

Open WebUI vulnerable to limited stored XSS vila uploaded html file

Vulnerability Description

Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to version 0.6.6, low privileged users can upload HTML files which contain JavaScript code via the `/api/v1/files/` backend endpoint. This endpoint returns a file id, which can be used to open the file in the browser and trigger the JavaScript code in the user's browser. Under the default settings, files uploaded by low-privileged users can only be viewed by admins or themselves, limiting the impact of this vulnerability. A link to such a file can be sent to an admin, and if clicked, will give the low-privileged user complete control over the admin's account, ultimately enabling RCE via functions. Version 0.6.6 contains a fix for the issue.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-46571

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

open-webui
Vulnerable Versions:
< 0.6.6

Timeline

Official Publish: May 5th, 2025
Last Modified: May 5th, 2025
Added to House: July 22nd, 2026

CVSS Vectors

Weaknesses (CWE)