CVE-2026-48766 | baptisteArno Typebot up to 3.16.x OpenAI Model-Listing Helper baseUrl permission
A vulnerability has been found in baptisteArno Typebot up to 3.16.x and classified as problematic. Impacted is an unknown function of the component OpenAI Model-Listing Helper. This manipulation of the argument baseUrl causes permission issues.
This vulnerability is registered as CVE-2026-48766. Remote exploitation of the attack is possible. No exploit is available.
The affected component should be upgraded.