Threat Advisories

Technical Threat Advisory | CVE-2026-45675

Written by Cyber Florida SOCAP Team | September, 16, 2026

Originally Published May 20, 2026

This technical threat advisory covers LDAP and OAuth first-user race condition, allowing unauthorized admin privilege escalation in Open WebUI.

This threat was originally discovered by Sanaan Fayaz Wani from the Cyber Florida SOC and is now recognized as an official CVE.