Security researcher and AI/DevOps engineer focused on authorization boundaries, multi-tenant isolation, developer tooling, and responsible disclosure.
- CVE-2026-59227 / GHSA-rqj7-6wrp-6g2g — Open WebUI image-edit authorization bypass. Remediation commit; fixed in v0.10.0.
- CVE-2026-59217 / GHSA-7r7x-gjvr-448g — Open WebUI knowledge-base write authorization bypass. Remediation commit; fixed in v0.10.0.
I reported both vulnerabilities through coordinated disclosure; Open WebUI remediated them in v0.10.0. Additional coordinated disclosures remain under embargo and will be shared only after publication.
- AI application and agent security
- Authorization, RBAC, and tenant-isolation failures
- Secure-by-default developer and infrastructure tooling
- Source-grounded vulnerability research and reproducible local proofs