CVE-2026-48762

medium

Description

TypeBot is a chatbot builder tool. Prior to version 3.16.0, the OpenAI "Create Transcription" action handler fetches a user-supplied audio URL using `fetch()` without applying the SSRF protection that exists elsewhere in the codebase. An attacker can direct the server to make HTTP requests to arbitrary internal addresses and localhost. The fetched content is passed to the OpenAI Whisper API and the transcription result is returned to the attacker. Version 3.16.0 fixes the issue.

References

https://github.com/baptisteArno/typebot.io/security/advisories/GHSA-h3v3-c6cq-q763

https://github.com/baptisteArno/typebot.io/releases/tag/v3.16.0

https://github.com/baptisteArno/typebot.io/pull/2428

https://github.com/baptisteArno/typebot.io/commit/a33051755f9e734596498851d5f61bd2e171f192

Details

Source: Mitre, NVD

Published: 2026-08-11

Updated: 2026-08-11

Risk Information

CVSS v2

Base Score: 5.5

Vector: CVSS2#AV:N/AC:L/Au:S/C:P/I:P/A:N

Severity: Medium

CVSS v3

Base Score: 5.4

Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N

Severity: Medium

EPSS

EPSS: 0.00028