What is CVE-2026-70492?
CVE-2026-70492 is a stack overflow vulnerability in Open WebUI's KaTeX rendering for math blocks, affecting versions 0.10.0 through 0.11.0. It allows crafted chat messages to cause a crash instead of a parse error. Users should update to the latest version immediately.
Azərbaycanca: CVE-2026-70492 Open WebUI platformasında KaTeX riyazi ifadələrin emalı zamanı stack overflow zəifliyidir. Bu, 0.10.0-dan 0.11.0 versiyasına qədər təsir edir və səhv math block mesajlarının işlənməsi nəticəsində baş verir. İstifadəçilərə dərhal son versiyaya yeniləmə tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-119
FAQ2
Which functionality of the Open WebUI platform is affected by CVE-2026-70492?
The vulnerability affects the KaTeX math expression rendering, where it creates a stack overflow during the handling of malformed math block messages.
What action is recommended to mitigate CVE-2026-70492?
Users are advised to immediately update to the latest version of the Open WebUI platform.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.