Ecosyste.ms: Advisories

An open API service providing security vulnerability metadata for many open source software ecosystems.

pypi open-webui Security Advisories

Browse all Security Advisories for pypi open-webui

Loading...
Moderate
GSA_kwCzR0hTQS14Y3ZjLTVoZ3YtcGhxZ84ABAJF
open-webui Insecure Direct Object Reference (IDOR) vulnerability
Ecosystems: pypi
Packages: open-webui
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: 8 days ago
Moderate
GSA_kwCzR0hTQS01NGY0LXY2djktOXE4Ms4ABAJI
open-webui allows writing and deleting arbitrary files
Ecosystems: pypi
Packages: open-webui
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: 8 days ago
Low
GSA_kwCzR0hTQS1tcTkyLWpyMzUtZmZwY84ABAJB
open-webui allows enumeration of file names and traversal of directories by observing the error messages
Ecosystems: pypi
Packages: open-webui
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: 8 days ago
Moderate
GSA_kwCzR0hTQS01anAzLXdwNXYtNTM2M84AA-fH
Open WebUI Stored Cross-Site Scripting Vulnerability
Ecosystems: pypi
Packages: open-webui
Source: GitHub Advisory Database
Blast Radius: 1.0
Published: 2 months ago
Statistics
Advisories: 20,344
Packages: 8,928
Repositories: 2
Ecosystems: 12
Filter by Package
tensorflow 433 tensorflow-gpu 425 tensorflow-cpu 422 Django 100 apache-airflow 84 Plone 65 ansible 63 salt 55 apache-superset 51 nova 47 mlflow 46 django 44 plone 43 rdiffweb 42 vyper 38 matrix-synapse 35 moin 35 gradio 32 keystone 31 Pillow 31 opencv-contrib-python 31 opencv-python 31 pillow 26 glance 20 mercurial 18 mindsdb 18 langchain 18 notebook 17 cobbler 17 PaddlePaddle 17 cryptography 16 neutron 16 ethyca-fides 15 paddlepaddle 15 pyload-ng 15 pyftpdlib 14 modoboa 14 vantage6 13 twisted 13 lollms 13 OctoPrint 13 wagtail 12 swift 12 calibreweb 12 roundup 12 aiohttp 12 urllib3 12 onionshare-cli 11 horizon 11 zenml 11 Flask-AppBuilder 10 opencv-contrib-python-headless 10 nautobot 10 trytond 10 sentry 10 opencv-python-headless 10 waitress 9 kiwitcms 9 ryu 9 Zope 9 python-keystoneclient 9 zope 9 cinder 9 pgadmin4 8 ipython 8 numpy 8 label-studio 8 trac 8 aubio 8 ckan 8 litellm 8 pyspark 7 Products.CMFPlone 7 matrix-sydent 7 scrapy 7 jupyter-server 7 pip 7 pysaml2 7 lief 7 inventree 7 Zope2 6 aim 6 requests 6 web2py 6 apache-airflow-providers-apache-hive 6 yt-dlp 6 mailman 6 mage-ai 6 graphite-web 6 tornado 6 tuf 6 Moin 6 lxml 6 nltk 5 oauthenticator 5 whoogle-search 5 python-gnupg 5 bleach 5 jupyterhub 5 Jinja2 5 torchserve 5 ait-core 5 langchain-experimental 5 dtale 5 pretix 5 paramiko 5 saleor 5 lmdb 5 grpc 5 grpcio 5 feedparser 5 omero-web 5 transformers 4 FreeTAKServer-UI 4 awsiotsdk 4 starlette 4 keylime 4 Pygments 4 esphome 4 apache-submarine 4 aws-iot-device-sdk-v2 4 httpie 4 Werkzeug 4 bottle 4 software.amazon.awssdk.iotdevicesdk:aws-iot-device-sdk 4 tripleo-heat-templates 4 markdown2 4 qutebrowser 4 Weblate 4 Radicale 4 dbt-core 4 Scrapy 4 Keystone 4 apache-iotdb 4 reportlab 4 mobsf 4 jupyterlab 4 Nova 4 streamlit 4 ansible-core 4 changedetection.io 4 barbican 4 nvflare 4 werkzeug 4 GitPython 4 PyPDF2 4 jwcrypto 4 indico 4 indy-node 4 buildbot 4 Flask-Security-Too 4 open-webui 4 keystonemiddleware 3 llama-index 3 RestrictedPython 3 mayan-edms 3 mitmproxy 3 bitlyshortener 3 octavia 3 openvpn-monitor 3 Red-DiscordBot 3 python-jose 3 plone.supermodel 3 certifi 3 sosreport 3 Mezzanine 3 Kallithea 3 anki 3 dulwich 3 langchain-community 3 h2o 3 micropython-copy 3 micropython-io 3 torch 3 ujson 3 rsa 3 gerapy 3 SQLAlchemy 3 apache-airflow-providers-apache-spark 3 llama-index-core 3 Products.PluggableAuthService 3 tinymce 3 tinymce/tinymce 3 datasette 3 ansible-runner 3 TinyMCE 3 django-tinymce 3 pyyaml 3 sanic 3 slixmpp 3 localstack 3 keyring 3 docassemble.webapp 3 jupyter-server-proxy 3 fava 3 quokka 3 pycrypto 3 ecdsa 3 sqlparse 3 httplib2 3