Vendorsoobaboogatextgenany version
Vulnerabilities

oobabooga TextGen any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2026-35050
text-generation-webui affected by Remote Code Execution (RCE) through Path Traversal at "Session -> Save extention settings to user_data/settings.yaml".
Published 2026-04-06 · Analyzed
9.1EPSS 0.006
CVE-2026-35485
text-generation-webui has a Path Traversal in load_grammar() — arbitrary file read without authentication
Published 2026-04-07 · Analyzed
7.5EPSS 0.009
CVE-2026-35483
text-generation-webui has a Path Traversal in load_template() — .jinja/.yaml/.yml file read without authentication
Published 2026-04-07 · Analyzed
5.3EPSS 0.004
CVE-2026-35484
text-generation-webui has a Path Traversal in load_preset() — .yaml file read without authentication
Published 2026-04-07 · Analyzed
5.3EPSS 0.004