Typebot是Baptiste Arnaud个人开发者的一个开源聊天机器人构建器。 TypeBot 3.15.2及之前版本存在安全漏洞,该漏洞源于bot-engine运行时仍允许任何认证用户通过预览聊天端点使用任何工作区的凭据,且getCredentials()函数使用假值检查进行工作区所有权验证,可能导致凭据泄露。以下版本受到影响:3.15.2及之前版本。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| baptisteArno | typebot.io | < 3.16.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| baptisteArno | typebot.io | < 3.16.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-33712 | 10.0 CRITICAL | TypeBot: Unauthenticated SSRF via isolated-vm fetch in preview chat endpoint bypasses SSRF |
| CVE-2026-28445 | 8.7 HIGH | Typebot: Stored XSS via Rating Block Custom Icon Bypasses isUnsafe Sandbox in Builder Prev |
| CVE-2026-39965 | 7.7 HIGH | TypeBot: SSRF via Open Redirect Bypass in HTTP Request and Code Blocks |
| CVE-2026-34207 | 7.6 HIGH | TypeBot: SSRF Protection Bypass via DNS-Resolved Hostnames in Webhook / HTTP Request Valid |
| CVE-2026-28444 | 6.5 MEDIUM | Typebot: IDOR in Result Logs Endpoint Allows Cross-Workspace Data Disclosure |
| CVE-2026-39966 | 6.5 MEDIUM | TypeBot: Async filter() bypasses authorization, allowing IDOR in getLinkedTypebots and lea |
| CVE-2026-39969 | 6.5 MEDIUM | TypeBot: WhatsApp Webhook Endpoint Missing Signature Verification |
| CVE-2026-39964 | 5.4 MEDIUM | TypeBot: Stored XSS via javascript: URI in text bubble links — bot author executes JS on v |
| CVE-2026-39967 | 3.1 LOW | TypeBot: Cross-Typebot Result Data Access via Missing typebotId Filter |
| CVE-2026-39970 | TypeBot: Stored Cross-Site Scripting (XSS) via SVG File Upload On Profile Picture Form |
No comments yet