CVE-2026-48766: TypeBot is a chatbot builder tool. Versions prior to 3.17.0 allow a low-privilege guest member of a workspace to exfiltr
Summary
TypeBot, a chatbot builder tool, has a security flaw in versions before 3.17.0 that lets low-privilege guest members steal OpenAI API keys (secret credentials used to access AI services). The vulnerability works because guests can trick the system into sending these secrets to attacker-controlled servers by manipulating a helper tool that lists available AI models.
Solution / Mitigation
Update TypeBot to version 3.17.0, which patches the issue.
Vulnerability Details
7.6(high)
EPSS: 0.0%
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L
network
low
low
none
August 11, 2026
Classification
Affected Vendors
Related Issues
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-48766
First tracked: August 11, 2026 at 02:09 PM
Classified by LLM (prompt v3) · confidence: 95%