检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-8X5V-CPV7-8JJP CVE-2026-70485 | Open WebUI: Any authenticated user can reach internal services and cloud metadata via NAT64-encoded URLs | 高危 | PyPIopen-webui | 已审查 | 2026-08-05 03:59 | 2026-08-05 03:59 |
| GHSA-G423-GRF7-98RV CVE-2026-70484 | Open WebUI: Users denied the image-generation permission can still generate images via chat completions |
当前筛选结果 35,190 条 · 时间按北京时间显示
| 中危 |
PyPIopen-webui |
| 已审查 |
| 2026-08-05 03:56 |
| 2026-08-05 03:56 |
| GHSA-RFFM-9Q57-Q649 CVE-2026-70480 | Open WebUI: Client-side SSRF via unrestricted external resource loading in Vega/Vega-Lite chart rendering | 中危 | PyPIopen-webui | 已审查 | 2026-08-05 03:54 | 2026-08-05 03:54 |
| GHSA-3VF6-64VR-3G56 CVE-2026-70483 | Open WebUI: Any authenticated user can cancel another user's chat generation via the chat delete endpoint | 低危 | PyPIopen-webui | 已审查 | 2026-08-05 03:54 | 2026-08-05 03:54 |
| GHSA-RQ84-P6RR-VF89 CVE-2026-70482 | Open WebUI: Account takeover via OAuth token exchange accepting tokens issued to any client | 高危 | PyPIopen-webui | 已审查 | 2026-08-05 03:52 | 2026-08-05 03:52 |
| GHSA-MJ5R-JF49-M3W7 CVE-2026-70481 | Open WebUI: Any member with write access to a standard channel can edit or delete other members' messages | 中危 | PyPIopen-webui | 已审查 | 2026-08-05 03:45 | 2026-08-05 03:45 |
| GHSA-W2RX-84HP-GG95 CVE-2026-70479 | Open WebUI: SSRF into internal services via unvalidated sub-resource requests in the Playwright web loader | 高危 | PyPIopen-webui | 已审查 | 2026-08-05 03:40 | 2026-08-05 03:40 |
| GHSA-QGVM-J2HM-6M38 CVE-2026-70478 | Flowise: Unauthenticated OAuth2 token refresh endpoint returns access tokens — enables token theft for any connected service | 严重 | npmflowise | 已审查 | 2026-08-05 03:37 | 2026-08-05 03:37 |
| GHSA-5XVG-PMGG-3MXR CVE-2026-70477 | Flowise: CSV Agent Prompt Injection Remote Code Execution Vulnerability | 严重 | npmflowise+1 | 已审查 | 2026-08-05 03:29 | 2026-08-05 03:29 |
| GHSA-GMMW-QG98-6J6P CVE-2026-70476 | Flowise: Broken Access Control in Stripe Subscription Endpoints Allows Cross-Tenant Billing Manipulation | 高危 | npmflowise | 已审查 | 2026-08-05 03:24 | 2026-08-05 03:24 |
| GHSA-8GJ2-2CVC-6XX7 | Flowise: Unauthenticated Credential Abuse via Text-to-Speech Endpoint Allows Unauthorized Use of Private Chatflow TTS Credentials | 中危 | npmflowise | 已审查 | 2026-08-05 03:19 | 2026-08-05 03:19 |
| GHSA-FM2F-4339-4P2F CVE-2026-70475 | Flowise: Missing Authorization on Execution Update Endpoint | 高危 | npmflowise | 已审查 | 2026-08-05 03:18 | 2026-08-05 03:18 |
| GHSA-WCH5-XP77-FXG4 CVE-2026-70474 | Flowise: Cross-Workspace OAuth2 Credential Metadata Leak | 高危 | npmflowise | 已审查 | 2026-08-05 02:01 | 2026-08-05 02:01 |
| GHSA-RWRP-9823-P2XQ | Flowise: Incomplete Credential Redaction Exposes Secrets via API | 中危 | npmflowise | 已审查 | 2026-08-05 01:57 | 2026-08-05 01:57 |
| GHSA-FR6G-7CQ8-FG82 CVE-2026-70473 | Flowise: Information Disclosure in GET /api/v1/upsert-history returns the entire server-wide upsert history | 高危 | npmflowise | 已审查 | 2026-08-05 01:57 | 2026-08-05 01:57 |
| GHSA-CHM3-VQCF-52RX CVE-2026-70472 | Flowise: Cross-workspace credential IDOR in openai-assistants-vector-store | 高危 | npmflowise | 已审查 | 2026-08-05 01:51 | 2026-08-05 01:51 |
| GHSA-4J8X-X6V7-W9RQ CVE-2026-69264 | Flowise: RCE via CSVAgent csvFile data URI base64 segment is interpolated into Python source without validation | 严重 | npmflowise+1 | 已审查 | 2026-08-05 01:43 | 2026-08-05 01:43 |
| GHSA-88PR-878C-24WF | Flowise: Authenticated arbitrary file write in the `S3 Directory` document loader via unsanitized S3 object keys | 高危 | npmflowise+1 | 已审查 | 2026-08-05 01:43 | 2026-08-05 01:43 |
| GHSA-8R8H-6VCC-XHRV CVE-2026-70471 | Flowise: RBAC Bypass Leading to Unauthorized Workspace Variables Disclosure | 高危 | npmflowise | 已审查 | 2026-08-05 01:43 | 2026-08-05 01:43 |
| GHSA-52FH-8V99-63C2 CVE-2026-70470 | Flowise: Pyodide validator Unicode homoglyph bypass leads to RCE | 严重 | npmflowise+1 | 已审查 | 2026-08-05 01:31 | 2026-08-05 01:31 |
| GHSA-XC48-889X-5QMW CVE-2026-69263 | Flowise: CVE-2025-8943 Patch Bypass: npm_config_yes bypasses MCP environment variable blocklist (Unauthenticated RCE) | 高危 | npmflowise+1 | 已审查 | 2026-08-05 01:09 | 2026-08-05 01:09 |
| GHSA-P5W8-M249-4R4V CVE-2026-69262 | Flowise: `DELETE /api/v1/chatflows/:id` does not validate resource type, allowing `agentflows:delete` and `chatflows:delete` to delete each other’s flow type | 高危 | npmflowise | 已审查 | 2026-08-05 00:50 | 2026-08-05 00:50 |
| GHSA-X3HF-7CJ6-3R4M CVE-2026-69259 | Flowise RCE via SQLite Record Manager Node | 严重 | npmflowise+1 | 已审查 | 2026-08-05 00:05 | 2026-08-05 00:05 |
| GHSA-6VH2-WG4H-4VWJ CVE-2026-69258 | Flowise: Unauthenticated Property Injection into Flow Execution Context via Ungated `overrideConfig` Spread in Prediction API | 高危 | npmflowise | 已审查 | 2026-08-04 23:56 | 2026-08-04 23:56 |
| GHSA-C6XH-WV4J-PPV5 CVE-2026-69257 | Flowise: SSRF Protection Bypass via IPv4-Mapped IPv6 Addresses | 高危 | npmflowise | 已审查 | 2026-08-04 23:51 | 2026-08-04 23:51 |