Open WebUI 0.11.4 Patches 19 Advisories, Including Session Token Theft
Open WebUI 0.11.4 fixes 19 advisories, four high-severity and three of them session token theft. None has a CVE id. Upgrade and review sharing rights.
· 6 minDesk · AI systems and model risk
Coverage of AI application security, model abuse, agentic systems, and data exposure.
Open WebUI 0.11.4 fixes 19 advisories, four high-severity and three of them session token theft. None has a CVE id. Upgrade and review sharing rights.
· 6 minAnthropic fixed a Claude Desktop macOS flaw where a file an injected agent left in a Cowork folder could run commands when opened. Fixed in 1.15962.0.
· 4 minA 9.9-rated GitHub advisory says LiteLLM's reused salt key lets an internal user become proxy admin and run commands. Two CVEs and another advisory landed too.
· 5 minA new paper shows Claude Code, Codex and other coding agents delete their own local traces; auto-mode monitors missed it in 5 of 10 pairs.
· 5 minAgentXploit exploits 72 previously disclosed agent-framework flaws at 59.3% end to end, against 38.4% for Codex on the same model.
· 4 minZenity's SalesBleed used a public Web-to-Lead form and two URL-redaction bypasses to make Salesforce Agentforce leak CRM data over DNS.
· 3 minAnthropic finds open-weight GLM-5.3 solves 50 of 410 ExploitBench exploits, near Mythos Preview, and its safeguards fall to abliteration.
· 3 minClaude Code 2.1.287 turns on mods by default: unsandboxed plugins that can read secrets and approve tool calls before you are asked. How to lock them down.
· 8 min