ZeroHour

CVE-2026-0766

CVSS
EPSS
Published
()
Modified
Description

Rejected reason: Open WebU's investigation further investigation showed that this is intended functionality of the Plugins extension system, in which users granted the relevant permission author Python that the server executes by design, and not a security issue. https://docs.openwebui.com/security/vendor-dispositions/cve-2026-0766

In the news

No ingested article mentions this CVE yet.