Frequency
2
occurrences
First Seen
January 6, 2026
Last Seen
January 6, 2026
Related Threat Clusters
-
High-Severity Vulnerability in Open WebUI Exposes Users to Account Takeover
A high-severity security vulnerability, tracked as CVE-2025-64496, has been identified in Open WebUI, affecting versions 0.6.34 and older when the Direct Connections feature is enabled. Discovered by Cato Networks…
4 articles · Updated January 6, 2026
Recent Intelligence Reports
- Open WebUI account takeover flaw could lead to remote code execution — Scworld · January 6, 2026
- Open WebUI bug turns the ‘free model’ into an enterprise backdoor — Csoonline · January 6, 2026