The bug allows attacker-controlled model servers to inject code, steal session tokens, and, in some cases, escalate to remote code execution on enterprise AI backends.
The flaw, tracked as CVE-2025-64496 and discovered by Cato Networks researchers, impacts Open WebUI versions 0.6.34 and older when the Direct Connections feature is enabled. The issue carries a ...
Open WebUI carried CVE-2025-64496, a high-severity code injection flaw in Direct Connection features Exploitation could ...
Weekly cybersecurity roundup covering exploited vulnerabilities, malware campaigns, legal actions, and nation-state attacks ...
Microsoft Edge is notably faster with a 40% performance boost (on average) in 14 key areas. The improvements are due to a migration to WebUI 2.0, which optimizes code bundles. More enhancements are on ...
Have you ever wondered how to harness the power of advanced AI models on your home or work Mac or PC without relying on external servers or cloud-based solutions? For many, the idea of running large ...
The image generation AI 'Stable Diffusion' has multiple user interfaces created by volunteers. ' Stable Diffusion WebUI Forge ' is a user interface developed by Lvmin Zhang, the developer of ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results