THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-0765 — Rejected reason: Open WebU's investigation further investigation  showed that this is intended functionality of the Plugins extension system, in which users granted the relevant permission author Python that the server executes by design, and not a security issue. https://docs.op

[NVD] CVE-2026-0765 — Rejected reason: Open WebU's investigation further investigation  showed that this is intended functionality of the Plugins extension system, in which users granted the relevant permission author Python that the server executes by design, and not a security issue. https://docs.op

lownvdPublished 2026-01-23

CVE-2026-0765 CVSS: None Published: 2026-01-23T04:16:03.390

Rejected reason: Open WebU's investigation further investigation  showed that this is intended functionality of the Plugins extension system, in which users granted the relevant permission author Python that the server executes by design, and not a security issue. https://docs.openwebui.com/security/vendor-dispositions/cve-2026-0765

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-0765