Vulnerabilities > Jupyter > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-03-20 CVE-2024-28179 Missing Authentication for Critical Function vulnerability in Jupyter Server Proxy
Jupyter Server Proxy allows users to run arbitrary external processes alongside their Jupyter notebook servers and provides authenticated web access.
network
low complexity
jupyter CWE-306
critical
9.8
2024-01-18 CVE-2024-22415 Path Traversal vulnerability in Jupyter Language Server Protocol Integration
jupyter-lsp is a coding assistance tool for JupyterLab (code navigation + hover suggestions + linters + autocompletion + rename) using Language Server Protocol.
network
low complexity
jupyter CWE-22
critical
9.8
2021-08-25 CVE-2021-39159 OS Command Injection vulnerability in Jupyter Binderhub
BinderHub is a kubernetes-based cloud service that allows users to share reproducible interactive computing environments from code repositories.
network
low complexity
jupyter CWE-78
critical
9.8
2021-08-09 CVE-2021-32797 Cross-site Scripting vulnerability in Jupyter Jupyterlab
JupyterLab is a user interface for Project Jupyter which will eventually replace the classic Jupyter Notebook.
network
low complexity
jupyter CWE-79
critical
9.6
2021-08-09 CVE-2021-32798 Cross-site Scripting vulnerability in Jupyter Notebook
The Jupyter notebook is a web-based notebook environment for interactive computing.
network
low complexity
jupyter CWE-79
critical
9.6