THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-0766 — Rejected reason: Open WebU's investigation further investigation showed that this is intended functionality of the Plugins extension system, in which users granted the relevant permission author Python that the server executes by design, and not a security issue. https://docs.ope

[NVD] CVE-2026-0766 — Rejected reason: Open WebU's investigation further investigation showed that this is intended functionality of the Plugins extension system, in which users granted the relevant permission author Python that the server executes by design, and not a security issue. https://docs.ope

lownvdPublished 2026-01-23

CVE-2026-0766 CVSS: None Published: 2026-01-23T04:16:03.527

Rejected reason: Open WebU's investigation further investigation showed that this is intended functionality of the Plugins extension system, in which users granted the relevant permission author Python that the server executes by design, and not a security issue. https://docs.openwebui.com/security/vendor-dispositions/cve-2026-0766

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-0766