YNOT
  • Industry News
    • Adult Business News
    • Adult Novelty News
    • YNOT Magazine
    • EU News
    • Opinions
    • Picture Galleries
  • PR Wire
    • Adult Company News
    • Adult Retail News
    • Adult Talent News
    • Adult Videos News
  • Industry Guides
    • Adult Affiliate Guide
    • Affiliate Marketing for Beginners
    • Top Adult Traffic Networks
    • Top Adult PR Agents
    • Funding an Adult Business
  • Business Directory
    • View Categories
    • View Listings
    • Submit Listing
  • Newsletters
  • Login with YNOT ID

High-severity flaw in Open WebUI may enable remote code execution via Direct Connections

Posted On 08 Jan 2026
By : Mariana Soto
High-severity flaw in Open WebUI may enable remote code execution via Direct Connections

A high-severity vulnerability in Open WebUI could enable account takeover and potentially lead to remote code execution in some configurations, according to research published Monday by Cato Networks. The flaw affects the popular open-source interface for self-hosted AI workflows.

Open WebUI allows external connections to other AI servers via OpenAI-compatible APIs through a feature called Direct Connections. Cato researchers discovered this feature contains a vulnerability, tracked as CVE-2025-64496, that enables potentially dangerous JavaScript code execution within the browser context.

If a user connects to a malicious server through social engineering or an impersonation attack, sending any message to the server could trigger a server-side event that runs JavaScript via a new Function() in the browser. This JavaScript could steal the user’s authentication token from localStorage and send it to the attacker, granting access to the user’s account, chat history, uploaded documents and API keys.

An attacker could achieve remote code execution on the host server if the compromised user has a specific permission called workspace.tools. With this permission, the attacker can use the stolen authentication token to create a malicious tool that executes arbitrary Python code via exec().

No sandboxing or validation is performed when executing this Python code as long as the user has the workspace.tools permission, according to Cato Networks. This allows an attacker to potentially escalate an account takeover to a full system compromise.

Cato CTRL Senior Security Researcher Vitaly Simonovich discovered the vulnerability in October 2025. It was disclosed and patched in November 2025, receiving a CVSS score of 8 from the National Institute of Standards and Technology’s National Vulnerability Database.

The flaw affects Open WebUI versions 0.6.34 and earlier. Users should update to version 0.6.35 or later, which adds middleware to block the execution of server-side events from Direct Connections servers.

Cato recommends treating connections to external AI servers like third-party code and limiting Direct Connections only to properly vetted services. Organizations should also restrict the workspace.tools permission to essential users, monitor for suspicious tool creations and implement policies to regularly rotate Open WebUI tokens.

About the Author
Mariana Soto reports on the business mechanics of adult entertainment — where the money flows, who’s investing, and what platforms are rising or falling. With a background in digital publishing and a sharp eye for disruption, Mariana breaks down the financial stories behind the scenes of adult media.
  • google-share
Previous Story

Jameliz Smith Accuses Sophie Rain of Fabricating $99 Million OnlyFans Earnings

Next Story

Could Lily Phillips’ Baptism Change Her Path in the Adult Industry?

Related Posts

ALL Wi-Fi Networks at Risk for ‘Devastating’ KRACK Attack

Posted On 16 Oct 2017
, By Marty O'Brien

Leave a Reply Cancel reply

You must be logged in to post a comment.

Sponsor

YNOT Shoot Me

YNOTShootMe.com has exclusive pics from adult industry business events. Check it out!

YNOT Directory

  • XLoveCash.com
    Live Cam Affiliate Programs
  • SmuttyFy
    Other Professional Services
  • NETbilling, Inc.
    Online Billing Services
  • Premiere Listing

    Dao of Leads

    More Details

RECENT

POPULAR

COMMENTS

Ellis Camino Joins Giovanni Valentino and Jiggy Jaguar on Fucking Around with Porn Stars

Posted On 09 Jan 2026
Starship Unveils “On My Mind” & “Devil Got Bound” Collections

Starship Unveils “On My Mind” & “Devil Got Bound” Collections

Posted On 09 Jan 2026
ChickPass Launches New Series: “Karma's Two Gay Stepdads”

ChickPass Launches New Series: “Karma's Two Gay Stepdads”

Posted On 09 Jan 2026

Vanessa, Meet Vivid

Posted On 29 Sep 2014
Laila Mickelwaite and Exodus Cry

Laila Mickelwaite, Exodus Cry and their Crusade Against Porn

Posted On 03 May 2021

Someone puts Gal Gadot in one of your vids? Take it down!

Posted On 13 Dec 2017

Hoping viewers can also enjoy a spooky...

Posted On 24 Oct 2023

now a days these type of games will get...

Posted On 17 Jul 2023

good move from adent. these type of...

Posted On 06 Jul 2023

Sponsor

Sitemap
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.