CVE-2024-7959

The `/openai/models` endpoint in open-webui/open-webui version 0.3.8 is vulnerable to Server-Side Request Forgery (SSRF). An attacker can change the OpenAI URL to any URL without checks, causing the endpoint to send a request to the specified URL and return the output. This vulnerability allows the attacker to access internal services and potentially gain command execution by accessing instance secrets.
References
Link Resource
https://huntr.com/bounties/3c8bea0a-d678-4d67-bb9c-2b5b610a2193 Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:openwebui:open_webui:0.3.8:*:*:*:*:*:*:*

History

21 Jul 2025, 20:06

Type Values Removed Values Added
CPE cpe:2.3:a:openwebui:open_webui:0.3.8:*:*:*:*:*:*:*
First Time Openwebui open Webui
Openwebui
References () https://huntr.com/bounties/3c8bea0a-d678-4d67-bb9c-2b5b610a2193 - () https://huntr.com/bounties/3c8bea0a-d678-4d67-bb9c-2b5b610a2193 - Exploit, Third Party Advisory
Summary
  • (es) El endpoint `/openai/models` en open-webui/open-webui versión 0.3.8 es vulnerable a Server-Side Request Forgery (SSRF). Un atacante puede cambiar la URL de OpenAI a cualquier URL sin comprobaciones, lo que provoca que el endpoint envíe una solicitud a la URL especificada y devuelva el resultado. Esta vulnerabilidad permite al atacante acceder a servicios internos y, potencialmente, obtener la ejecución de comandos al acceder a secretos de instancia.

20 Mar 2025, 10:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-20 10:15

Updated : 2025-07-21 20:06


NVD link : CVE-2024-7959

Mitre link : CVE-2024-7959

CVE.ORG link : CVE-2024-7959


JSON object : View

Products Affected

openwebui

  • open_webui
CWE
CWE-918

Server-Side Request Forgery (SSRF)