Skip to content
archiveexploit · 10 Sep 2026 · 15:10 UTC

GHSA-jmc6-2wr8-h3wj: Open WebUI: Same-origin XSS to account takeover via terminal port-preview iframe hardcoding allow-same-origin

EXPLCVE-2026-87995source · GTH
HIGHHigh-risk vulnerability — CVSS 8.7

last 60 dispatches · spectrum

## Summary Any authenticated user with access to a shared terminal server could get script of their choosing to run in the Open WebUI origin itself. The in-app port preview rendered the content of a previewed port in an iframe whose sandbox always granted `allow-same-origin` alongside `allow-scripts`, and that content is served from a path on the application's own origin, so the sandbox provided no isolation at all. Script served on a previewed port could read the victim's session token and take over the account. …

CVE · detail
grounded ✓primary source ↗
Early access

Get the next one first.

Early access opens the actor API and MCP server first, plus alerts when an adversary you follow lands on the wire. One email when it's ready. Nothing else, ever.

bot-protected