Attackers can craft a malicious prompt that coerces the language model into executing arbitrary JavaScript in the context of the web page.
| Software | From | Fixed in |
|---|---|---|
| openwebui / open_webui | 0.1.105 | 0.1.105.x |
open-webui
|
- | 0.1.105.x |