CVE-2026-88005
Dashboard / Vulnerabilities / CVE-2026-88005
Summary: Open WebUI: Users denied by the OAuth domain allowlist or role policy can still sign in via token exchange
Details: Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.8.0 until 0.9.0, Open WebUI's OAuth token exchange endpoint issues a session for a provider access token without applying the email domain allowlist that the normal OAuth login callback enforces. An account whose email domain the login callback would refuse could still obtain a working session through this endpoint. This issue is fixed in version 0.9.0.
References: https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/88xxx/CVE-2026-88005.json, https://github.com/open-webui/open-webui/commit/fb5ef978bfb451c3f2221931e08e54250cec58ca, https://github.com/open-webui/open-webui/pull/23639, https://github.com/open-webui/open-webui/security/advisories/GHSA-4qg5-cxx4-g927, https://nvd.nist.gov/vuln/detail/CVE-2026-88005
Affected packages
Package
Name:
Purl:
Affected ranges
Type: GIT
Events:
