CVE-2026-54015 | open-webui Open WebUI up to 0.9.5 Prompt History resource injection
A vulnerability, which was classified as problematic, was found in open-webui Open WebUI. This vulnerability affects unknown code of the component Prompt History. Such manipulation leads to improper control of resource identifiers.
This vulnerability is traded as CVE-2026-54015. The attack may be launched remotely. There is no exploit available.
You should upgrade the affected component.