Open WebUI Vulnerability: Potential RCE via Pyodide
An early warning has been issued regarding a potential vulnerability in Open WebUI that could allow remote code execution via Pyodide. Users of Open WebUI are advised to upgrade to the latest version and disable Pyodide if possible.
What happened
Open WebUI reportedly runs client-side Python (Pyodide) in a same-origin web worker, which appears to enable a low-privileged user to achieve remote code execution on the server through shared chat messages. This vulnerability is currently under investigation. To assess your exposure, review the use of Pyodide in your Open WebUI configuration and consider upgrading to the latest version. For more details, consult the primary source at [GHSA-4r2p-27mh-5m22](https://github.com/open-webui/open-webui/security/advisories/GHSA-4r2p-27mh-5m22).
The vulnerability, tracked as GHSA-4r2p-27mh-5m22, affects the PyPI component of Open WebUI. The recommended action is to upgrade to the latest version of Open WebUI and ensure it is configured to not use Pyodide if possible. Further information on the severity and specific versions affected should be obtained from the primary sources.
How 0Day mitigates this
ghsa-4r2p-27mh-5m22 is anywhere in your dependency tree, the engineers who own the affected repositories get a push alert the moment it is flagged — no manual audit to remember to run.Read how this differs from waiting on a scanner to catch a known advisory, or see the exact, read-only access 0Day needs to do this for an organization.