CVE-2026-56398
Last modified
CVE-2026-56398 is a critical-severity vulnerability rated 9/10 on the CVSS scale. Open WebUI before 0.9.5 contains a stored cross-site scripting vulnerability in the OAuth authentication flow where the picture claim URL MIME type is inferred from file extension rather than Content-Type header, allowing SVG files to bypass the profile image validator and be stored as data URIs. Authenticated users who visit the profile image endpoint receive attacker-controlled SVG content with inline disposition and no default security headers, enabling script execution in the same origin to steal authentication tokens and achieve account takeover.. EPSS estimates a 0.30% chance of exploitation in the next 30 days.
Description
Open WebUI before 0.9.5 contains a stored cross-site scripting vulnerability in the OAuth authentication flow where the picture claim URL MIME type is inferred from file extension rather than Content-Type header, allowing SVG files to bypass the profile image validator and be stored as data URIs. Authenticated users who visit the profile image endpoint receive attacker-controlled SVG content with inline disposition and no default security headers, enabling script execution in the same origin to steal authentication tokens and achieve account takeover.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Openwebui | Open Webui | < 0.9.5 |
References
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2026-56398?
How severe is CVE-2026-56398?
How do I fix CVE-2026-56398?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-56392GNU coreutils unexpand is vulnerable to a heap-based buffer …1.8
- CVE-2026-56393Craft CMS 4.x (>= 4.0.0-RC1, < 4.17.0-beta.1) and 5.x (>= 5.…4.8
- CVE-2026-56394Craft CMS from 4.0.0-RC1 contains an authenticated path trav…7.1
- CVE-2026-56395Rejected reason: This record is a duplicate; use CVE-2026-56…
- CVE-2026-56396phpMyFAQ before 4.1.4 contains missing authorization vulnera…8.8
- CVE-2026-56397SiYuan before v3.6.1 fails to sanitize package metadata and …9.6
- CVE-2026-56399Open WebUI before 0.6.27 contains a server-side request forg…5.3
- CVE-2026-5640A vulnerability has been found in PHPGurukul Online Shopping…6.3
- CVE-2026-56400open-webui before 0.3.14 contains a cross-origin resource sh…9.6
- CVE-2026-56401Rejected reason: This CVE ID has been rejected or withdrawn …
- CVE-2026-56402NanoClaw before 2.1.17 contains a privilege escalation vulne…6.5
- CVE-2026-56403libexpat before 2.8.2 has an integer overflow in storeAtts.6.9
Are you affected by CVE-2026-56398?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
