Typebot records
5 published records for vendor typebot.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 20%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')3
- CWE-284 Improper Access Control1
- CWE-918 Server-Side Request Forgery (SSRF)1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
5 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2025-64709No exploit | Typebot May Expose AWS EKS Credentials via Server Side Request Forgery in Webhook Blocktypebot · typebot · CWE-918 | Critical9.9 | — | 0.4% | Nov 13, 2025 |
37Monitor | CVE-2024-30264No exploit | typebot.io: `GHSL-2024-040`typebot · typebot · CWE-79 | Critical9.3 | — | 0.8% | Apr 4, 2024 |
30Monitor | CVE-2025-64706No exploit | Typebot IDOR Vulnerability: Unauthorized API Token Deletion and Exposuretypebot · typebot · CWE-284 | High7.5 | — | 0.2% | Nov 13, 2025 |
29Monitor | CVE-2025-65098No exploit | Typebot Vulnerable to Credential Theft via Client-Side Script Execution and API Authorization Bypasstypebot · typebot · CWE-79 | High7.4 | — | 0.3% | Jan 22, 2026 |
19Monitor | CVE-2021-24902No exploit | Typebot < 1.4.3 - Admin+ Stored Cross Site Scriptingtypebot · typebot · CWE-79 | Medium4.8 | — | 0.6% | Dec 27, 2021 |
- CVE-2025-6470939Monitor
Typebot May Expose AWS EKS Credentials via Server Side Request Forgery in Webhook Block
CriticalCVSS 9.9No exploitEPSS 0%typebot · typebotNov 13, 2025
- CVE-2024-3026437Monitor
typebot.io: `GHSL-2024-040`
CriticalCVSS 9.3No exploitEPSS 1%typebot · typebotApr 4, 2024
- CVE-2025-6470630Monitor
Typebot IDOR Vulnerability: Unauthorized API Token Deletion and Exposure
HighCVSS 7.5No exploitEPSS 0%typebot · typebotNov 13, 2025
- CVE-2025-6509829Monitor
Typebot Vulnerable to Credential Theft via Client-Side Script Execution and API Authorization Bypass
HighCVSS 7.4No exploitEPSS 0%typebot · typebotJan 22, 2026
- CVE-2021-2490219Monitor
Typebot < 1.4.3 - Admin+ Stored Cross Site Scripting
MediumCVSS 4.8No exploitEPSS 1%typebot · typebotDec 27, 2021