Vulnerabilities > Jupyter

DATE CVE VULNERABILITY TITLE RISK
2024-08-28 CVE-2024-43805 Cross-site Scripting vulnerability in Jupyter Jupyterlab and Notebook
jupyterlab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook Architecture.
network
low complexity
jupyter CWE-79
6.1
2024-08-08 CVE-2024-41942 Unspecified vulnerability in Jupyter Jupyterhub
JupyterHub is software that allows one to create a multi-user server for Jupyter notebooks.
network
low complexity
jupyter
7.2
2024-06-06 CVE-2024-35178 Unspecified vulnerability in Jupyter Server
The Jupyter Server provides the backend for Jupyter web applications.
network
low complexity
jupyter
7.5
2024-01-19 CVE-2024-22420 Cross-site Scripting vulnerability in multiple products
JupyterLab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook and Architecture.
network
low complexity
jupyter fedoraproject CWE-79
6.1
2024-01-19 CVE-2024-22421 Relative Path Traversal vulnerability in multiple products
JupyterLab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook and Architecture.
network
low complexity
jupyter fedoraproject CWE-23
6.5
2024-01-18 CVE-2024-22415 Path Traversal vulnerability in Jupyter Language Server Protocol Integration
jupyter-lsp is a coding assistance tool for JupyterLab (code navigation + hover suggestions + linters + autocompletion + rename) using Language Server Protocol.
network
low complexity
jupyter CWE-22
critical
9.8
2023-12-08 CVE-2023-48311 Unspecified vulnerability in Jupyter Dockerspawner
dockerspawner is a tool to spawn JupyterHub single user servers in Docker containers.
network
low complexity
jupyter
4.3
2023-12-04 CVE-2023-49080 Information Exposure Through an Error Message vulnerability in Jupyter Server
The Jupyter Server provides the backend (i.e.
network
low complexity
jupyter CWE-209
4.3
2023-08-28 CVE-2023-39968 Open Redirect vulnerability in Jupyter Server
jupyter-server is the backend for Jupyter web applications.
network
low complexity
jupyter CWE-601
6.1
2023-08-28 CVE-2023-40170 Missing Authentication for Critical Function vulnerability in Jupyter Server
jupyter-server is the backend for Jupyter web applications.
network
low complexity
jupyter CWE-306
6.1