CVE-2024-7959

The `/openai/models` endpoint in open-webui/open-webui version 0.3.8 is vulnerable to Server-Side Request Forgery (SSRF). An attacker can change the OpenAI URL to any URL without checks, causing the endpoint to send a request to the specified URL and return the output. This vulnerability allows the attacker to access internal services and potentially gain command execution by accessing instance secrets.
References
Link Resource
https://huntr.com/bounties/3c8bea0a-d678-4d67-bb9c-2b5b610a2193 Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:openwebui:open_webui:0.3.8:*:*:*:*:*:*:*

History

21 Jul 2025, 20:06

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.7
First Time Openwebui
Openwebui open Webui
References () https://huntr.com/bounties/3c8bea0a-d678-4d67-bb9c-2b5b610a2193 - () https://huntr.com/bounties/3c8bea0a-d678-4d67-bb9c-2b5b610a2193 - Exploit, Third Party Advisory
CPE cpe:2.3:a:openwebui:open_webui:0.3.8:*:*:*:*:*:*:*

20 Mar 2025, 10:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-20 10:15

Updated : 2025-07-21 20:06


NVD link : CVE-2024-7959

Mitre link : CVE-2024-7959


JSON object : View

Products Affected

openwebui

  • open_webui
CWE
CWE-918

Server-Side Request Forgery (SSRF)