[GH-ISSUE #22823] Security vulnerability report pending response — GHSA-6qcf-gqhr-8pmv #58491

Closed
opened 2026-05-05 23:16:51 -05:00 by GiteaMirror · 2 comments
Owner

Originally created by @akshatgit on GitHub (Mar 19, 2026).
Original GitHub issue: https://github.com/open-webui/open-webui/issues/22823

A security vulnerability has been reported via GitHub Security Advisories (GHSA-6qcf-gqhr-8pmv) on 2026-02-21. No acknowledgement has been received after 25 days.

Operating under a 90-day responsible disclosure policy. Disclosure deadline: 2026-05-22.

Maintainers please review the private advisory thread.

Originally created by @akshatgit on GitHub (Mar 19, 2026). Original GitHub issue: https://github.com/open-webui/open-webui/issues/22823 A security vulnerability has been reported via GitHub Security Advisories (GHSA-6qcf-gqhr-8pmv) on 2026-02-21. No acknowledgement has been received after 25 days. Operating under a 90-day responsible disclosure policy. Disclosure deadline: **2026-05-22**. Maintainers please review the private advisory thread.
Author
Owner

@pr-validator-bot commented on GitHub (Mar 19, 2026):

⚠️ Missing Issue Title Prefix

@akshatgit, your issue title is missing a prefix (e.g., bug:, feat:, docs:).

Please update your issue title to include one of the following prefixes:

  • bug: Bug report or error you've encountered
  • feat: Feature request or enhancement suggestion
  • docs: Documentation issue or improvement request
  • question: Question about usage or functionality
  • help: Request for help or support

Example: bug: Login fails when using special characters in password

<!-- gh-comment-id:4087199648 --> @pr-validator-bot commented on GitHub (Mar 19, 2026): # ⚠️ Missing Issue Title Prefix @akshatgit, your issue title is missing a prefix (e.g., `bug:`, `feat:`, `docs:`). Please update your issue title to include one of the following prefixes: - **bug**: Bug report or error you've encountered - **feat**: Feature request or enhancement suggestion - **docs**: Documentation issue or improvement request - **question**: Question about usage or functionality - **help**: Request for help or support Example: `bug: Login fails when using special characters in password`
Author
Owner

@akshatgit commented on GitHub (Mar 19, 2026):

Acknowledged. This is a security report — not a standard bug, feature, or docs issue. The appropriate channel is the private advisory thread (GHSA-6qcf-gqhr-8pmv). Maintainers please review there.

<!-- gh-comment-id:4087216835 --> @akshatgit commented on GitHub (Mar 19, 2026): Acknowledged. This is a security report — not a standard bug, feature, or docs issue. The appropriate channel is the private advisory thread (GHSA-6qcf-gqhr-8pmv). Maintainers please review there.
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: github-starred/open-webui#58491