CVE-2026-54022
Last modified
CVE-2026-54022 is a medium-severity vulnerability rated 5.3/10 on the CVSS scale. Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.8.11, the ydoc:document:join Socket.IO handler checks note ownership only when the document_id starts with note: (colon). EPSS estimates a 0.27% chance of exploitation in the next 30 days.
Description
Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.8.11, the ydoc:document:join Socket.IO handler checks note ownership only when the document_id starts with note: (colon). However, the YdocManager storage layer normalizes all document IDs by replacing colons with underscores (document_id.replace(":", "_")). An attacker can join a document room using note_<id> (underscore) instead of note:<id> (colon), bypassing the authorization check entirely while accessing the same underlying Yjs document. The server then returns the full document state, leaking the victim's private note contents. This vulnerability is fixed in 0.8.11.
Metrics
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Openwebui | Open Webui | < 0.8.11 |
References
- https://github.com/open-webui/open-webui/security/advisories/GHSA-8788-j68r-3cghVendor Advisory, Exploit
- https://github.com/open-webui/open-webui/security/advisories/GHSA-8788-j68r-3cghVendor Advisory, Exploit
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2026-54022?
How severe is CVE-2026-54022?
How do I fix CVE-2026-54022?
Are you affected by CVE-2026-54022?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
