TypeBot — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
1
occurrences
First Seen
June 18, 2026
Last Seen
June 18, 2026

TypeBot is a technology platform tracked by ThreatCluster, appearing in 1 threat cluster built from 1 intelligence report mention.

TypeBot is a technology platform tracked across 1 threat cluster and 1 intelligence report mention on ThreatCluster. First observed June 18, 2026; most recent activity June 18, 2026.

Related Threat Clusters

Recent Intelligence Reports

  • CVE-2026-48768 AKAOMA CVE VULNERABILITIES / 14h TypeBot is a chatbot builder tool. In versions 3.16.1 and earlier, POST /api/blocks/file-input/v3/generate-upload-url is unauthenticated and uses unsanitized fileName input to construct public/ S3 object keys, while issuing presigned PUT URLs that do not bind Content-Type. As a result, any anonymous visitor to a published bot with a file input can upload attacker-controlled HTML, SVG, or JS to attacker-chosen subpaths, including other tenants’ publ — cve.akaoma.com · June 18, 2026

Frequently asked questions

What is TypeBot?

TypeBot is a technology platform tracked by ThreatCluster, appearing in 1 threat cluster built from 1 intelligence report mention.

Is TypeBot still active?

The most recent intelligence report mentioning TypeBot on ThreatCluster is dated June 18, 2026.

What is TypeBot associated with?

Across ThreatCluster reporting, TypeBot most frequently co-occurs with Zero-day Exploit, CVE-2026-48768, CWE-22 - Path Traversal.

What are the latest developments involving TypeBot?

The most significant recent cluster is “Critical CVE-2026-48768 Vulnerability in TypeBot Exposes Users to File Upload Attacks” (2 articles · Updated June 18, 2026). TypeBot appears across 1 threat cluster in total, listed above with sources.

How much reporting does ThreatCluster have on TypeBot?

TypeBot appears in 1 intelligence report mention across 1 deduplicated threat cluster, aggregated from 17,000+ monitored sources.

CVSS v3.1 Breakdown