CVE-2026-33712
Typebot, a chatbot builder, had a critical flaw in its preview chat endpoint that let anyone send arbitrary server‑side requests. The bug allowed unauthenticated users to trick the system into reaching internal services or cloud APIs, potentially leaking secrets or data. The issue was fixed in version 3.16.0.
An official fix is available, so this entry is kept for 30 days and then removed automatically.
Who is affected
Users running Typebot 3.15.2 or earlier, whether self‑hosted or on the hosted service, are vulnerable.
Real-world impact
An attacker could use the endpoint to make the server reach private network addresses or cloud metadata services, stealing credentials, accessing internal resources, or exfiltrating data.
Why this severity
The CVSS score of 10 reflects that the flaw is exploitable without authentication, has a high confidentiality impact, and bypasses all existing SSRF safeguards. Because the attacker can read sensitive data but not alter or deny service, the score is driven by the lack of authentication and the potential for data theft.
What to do about it
- 01Upgrade Typebot to version 3.16.0 or later.
- 02Restart the Typebot service after upgrading.
NVD-referenced vendor advisory
Timeline
- May 22, 2026 · May 22, 2026PublishedDisclosed and added to the National Vulnerability Database.
- Jul 23, 2026 · 12d agoAdvisory updatedThe NVD record was last revised.
- Jul 25, 2026 · 10d agoOfficial fix availableA vendor patch or mitigation now exists — see the remediation steps above.