Vulnary
← back to the feed
Critical· 10official fix available

CVE-2026-33712

Typebot, a chatbot builder, had a critical flaw in its preview chat endpoint that let anyone send arbitrary server‑side requests. The bug allowed unauthenticated users to trick the system into reaching internal services or cloud APIs, potentially leaking secrets or data. The issue was fixed in version 3.16.0.

publishedMay 22, 2026
last modifiedJul 23, 2026
sourcesNVD
severity · cvss
10
critical · how bad it is
exploitation · epss
<1%
27th percentile · chance of exploitation in 30 days
(ai-assisted) A model wrote this summary from the official data, so double-check it against the source before you act on it. Read the official advisory →
auto-deletes from the system
counting…on Aug 24, 2026

An official fix is available, so this entry is kept for 30 days and then removed automatically.

01

Who is affected

Users running Typebot 3.15.2 or earlier, whether self‑hosted or on the hosted service, are vulnerable.

02

Real-world impact

An attacker could use the endpoint to make the server reach private network addresses or cloud metadata services, stealing credentials, accessing internal resources, or exfiltrating data.

03

Why this severity

The CVSS score of 10 reflects that the flaw is exploitable without authentication, has a high confidentiality impact, and bypasses all existing SSRF safeguards. Because the attacker can read sensitive data but not alter or deny service, the score is driven by the lack of authentication and the potential for data theft.

04

What to do about it

official fix available
recommended steps
  1. 01Upgrade Typebot to version 3.16.0 or later.
  2. 02Restart the Typebot service after upgrading.

NVD-referenced vendor advisory

05

Timeline

  1. May 22, 2026 · May 22, 2026
    Published
    Disclosed and added to the National Vulnerability Database.
  2. Jul 23, 2026 · 12d ago
    Advisory updated
    The NVD record was last revised.
  3. Jul 25, 2026 · 10d ago
    Official fix available
    A vendor patch or mitigation now exists — see the remediation steps above.
06

How it’s attacked

Attack vectorNetwork (remote)
Attack complexityLow
Privileges requiredNone
User interactionNone needed
ScopeChanged
Confidentiality impactHigh
Integrity impactHigh
Availability impactNone
07

References & advisories

(ai-assisted) A model wrote this summary from the official data, so double-check it against the source before you act on it. Read the official advisory →
CVE-2026-33712: Typebot, a chatbot builder, had a critical flaw in its preview chat en · Vulnary