Typebot是Baptiste Arnaud个人开发者的一个开源聊天机器人构建器。 Typebot 3.15.2及之前版本存在安全漏洞,该漏洞源于embed包中的RatingButton组件使用Solid的innerHTML指令渲染用户控制的customIcon.svg字段而未进行清理,可能导致在构建器的认证环境中执行任意HTML/JS,允许会话劫持和权限提升。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| baptisteArno | typebot.io | < 3.16.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| baptisteArno | typebot.io | < 3.16.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-33712 | 10.0 CRITICAL | TypeBot: Unauthenticated SSRF via isolated-vm fetch in preview chat endpoint bypasses SSRF |
| CVE-2026-39965 | 7.7 HIGH | TypeBot: SSRF via Open Redirect Bypass in HTTP Request and Code Blocks |
| CVE-2026-34207 | 7.6 HIGH | TypeBot: SSRF Protection Bypass via DNS-Resolved Hostnames in Webhook / HTTP Request Valid |
| CVE-2026-39968 | 7.1 HIGH | TypeBot: Cross-Workspace Credential Theft via Bot-Engine Preview Endpoint |
| CVE-2026-28444 | 6.5 MEDIUM | Typebot: IDOR in Result Logs Endpoint Allows Cross-Workspace Data Disclosure |
| CVE-2026-39966 | 6.5 MEDIUM | TypeBot: Async filter() bypasses authorization, allowing IDOR in getLinkedTypebots and lea |
| CVE-2026-39969 | 6.5 MEDIUM | TypeBot: WhatsApp Webhook Endpoint Missing Signature Verification |
| CVE-2026-39964 | 5.4 MEDIUM | TypeBot: Stored XSS via javascript: URI in text bubble links — bot author executes JS on v |
| CVE-2026-39967 | 3.1 LOW | TypeBot: Cross-Typebot Result Data Access via Missing typebotId Filter |
| CVE-2026-39970 | TypeBot: Stored Cross-Site Scripting (XSS) via SVG File Upload On Profile Picture Form |
No comments yet