Open WebUI: Missing `workspace.tools` Authorization Check on Tool Update Endpoint Allows Privilege Escalation to Code Ex
- Severity:
- High
Description
The tool update endpoint (POST /api/v1/tools/id/{id}/update) is missing the workspace.tools permission check that is present on the tool create endpoint.
Recommendation
Update the open-webui package to the latest compatible version. Followings are version details:
- Affected version(s): < 0.9.5
- Patched version(s): 0.9.5
References
Related Issues
- @delmaredigital/payload-puc is missing authorization on /api/puck/* CRUD endpoints allows unauthenticated access to Puck - CVE-2026-39397
- Open WebUI Affected by an External Model Server (Direct Connections) Code Injection via SSE Events - CVE-2025-64496
- StudioCMS: REST API Missing Rank Check Allows Admin to Create Peer Admin Accounts - CVE-2026-32106
- open-webui Vulnerable to Stored XSS via Model Description - CVE-2026-44721
You might also like:
- Tags:
- npm
- open-webui
Anything's wrong? Let us know Last updated on May 15, 2026


