Vulnerabilities > Jupyter

DATE CVE VULNERABILITY TITLE RISK
2022-06-14 CVE-2022-29238 Forced Browsing vulnerability in Jupyter Notebook
Jupyter Notebook is a web-based notebook environment for interactive computing.
network
low complexity
jupyter CWE-425
4.0
2022-06-09 CVE-2022-31027 Authorization Bypass Through User-Controlled Key vulnerability in Jupyter Oauthenticator
OAuthenticator is an OAuth token library for the JupyerHub login handler.
network
low complexity
jupyter CWE-639
4.0
2022-03-31 CVE-2022-24758 Information Exposure Through Log Files vulnerability in Jupyter Notebook
The Jupyter notebook is a web-based notebook environment for interactive computing.
network
low complexity
jupyter CWE-532
5.0
2022-03-23 CVE-2022-24757 Information Exposure Through Log Files vulnerability in Jupyter Server
The Jupyter Server provides the backend (i.e.
network
low complexity
jupyter CWE-532
5.0
2022-01-25 CVE-2022-21697 Server-Side Request Forgery (SSRF) vulnerability in Jupyter Server Proxy
Jupyter Server Proxy is a Jupyter notebook server extension to proxy web services.
network
low complexity
jupyter CWE-918
5.5
2021-11-04 CVE-2021-41247 Insufficient Session Expiration vulnerability in Jupyter Jupyterhub
JupyterHub is an open source multi-user server for Jupyter notebooks.
network
low complexity
jupyter CWE-613
5.0
2021-11-03 CVE-2021-41134 Cross-site Scripting vulnerability in Jupyter Nbdime and Nbdime-Jupyterlab
nbdime provides tools for diffing and merging of Jupyter Notebooks.
network
jupyter CWE-79
3.5
2021-08-25 CVE-2021-39159 OS Command Injection vulnerability in Jupyter Binderhub
BinderHub is a kubernetes-based cloud service that allows users to share reproducible interactive computing environments from code repositories.
network
low complexity
jupyter CWE-78
critical
9.8
2021-08-09 CVE-2021-32797 Cross-site Scripting vulnerability in Jupyter Jupyterlab
JupyterLab is a user interface for Project Jupyter which will eventually replace the classic Jupyter Notebook.
network
jupyter CWE-79
6.8
2021-08-09 CVE-2021-32798 Cross-site Scripting vulnerability in Jupyter Notebook
The Jupyter notebook is a web-based notebook environment for interactive computing.
network
jupyter CWE-79
6.8