How to use this reference
Version 0.11.4 is identified as patched. The linked change and release notes corroborate expanded claim handling and rejection when role evidence cannot be read. Editorial lesson: sharing policy code is insufficient when callers provide different evidence; document claim provenance and make missing-evidence behavior explicit.
Before reading
- OIDC claims and application-role mapping
- Account linking, role revocation and fail-closed policy behavior
Context and limits
- Publisher prerequisites: non-default token exchange and role management enabled, a non-wildcard allowed-role policy, roles absent from provider user information, and a previously linked account still able to receive valid provider tokens.
- The advisory covers 0.11.1 through 0.11.3. Prior access persists; no new account or privilege elevation is established. Browser sign-in remains policy-enforcing.
- The September 9 advisory identified 0.11.1 as fixing omitted role evaluation. The September 27 disclosure establishes that claim-source differences required further remediation; the earlier fix must not be presented as sufficient for this case.
- The primary advisory credits manus-pi as reporter and Classic298 for remediation. Its local-provider experiment does not independently verify every identity-provider configuration or deployed installation.
- The remedy addresses newly issued sessions; immediate invalidation of all previously issued sessions is not established by these sources. Resource publication and product patch release are distinct.
- Conceptual defensive summary only; public disclosure grants no testing authorization.
Sources and provenance
- Revoked users keep signing in via token exchange when roles are only in the ID token Open WebUI · reviewed 2026-10-03
- Users denied by the OAuth role policy can still sign in via token exchange Open WebUI · reviewed 2026-10-03
- Role-claim handling remediation commit Open WebUI · reviewed 2026-10-03
- Open WebUI v0.11.4 release notes Open WebUI · reviewed 2026-10-03
Record reviewed 2026-10-03. Snapshot d5550c789111. Open the complete JSON contract.