CVE-2024-7959

The `/openai/models` endpoint in open-webui/open-webui version 0.3.8 is vulnerable to Server-Side Request Forgery (SSRF). An attacker can change the OpenAI URL to any URL without checks, causing the endpoint to send a request to the specified URL and return the output. This vulnerability allows the attacker to access internal services and potentially gain command execution by accessing instance secrets.
References
Link Resource
https://huntr.com/bounties/3c8bea0a-d678-4d67-bb9c-2b5b610a2193 Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:openwebui:open_webui:0.3.8:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-03-20 10:15

Updated : 2025-07-21 20:06


NVD link : CVE-2024-7959

Mitre link : CVE-2024-7959

CVE.ORG link : CVE-2024-7959


JSON object : View

Products Affected

openwebui

  • open_webui
CWE
CWE-918

Server-Side Request Forgery (SSRF)