Vulnerabilities > Jupyter > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-01-19 CVE-2024-22420 Cross-site Scripting vulnerability in multiple products
JupyterLab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook and Architecture.
network
low complexity
jupyter fedoraproject CWE-79
6.1
2024-01-19 CVE-2024-22421 Relative Path Traversal vulnerability in multiple products
JupyterLab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook and Architecture.
network
low complexity
jupyter fedoraproject CWE-23
6.5
2023-12-08 CVE-2023-48311 Unspecified vulnerability in Jupyter Dockerspawner
dockerspawner is a tool to spawn JupyterHub single user servers in Docker containers.
network
low complexity
jupyter
4.3
2023-12-04 CVE-2023-49080 Information Exposure Through an Error Message vulnerability in Jupyter Server
The Jupyter Server provides the backend (i.e.
network
low complexity
jupyter CWE-209
4.3
2023-08-28 CVE-2023-39968 Open Redirect vulnerability in Jupyter Server
jupyter-server is the backend for Jupyter web applications.
network
low complexity
jupyter CWE-601
6.1
2023-08-28 CVE-2023-40170 Missing Authentication for Critical Function vulnerability in Jupyter Server
jupyter-server is the backend for Jupyter web applications.
network
low complexity
jupyter CWE-306
6.1
2022-08-18 CVE-2021-32862 Cross-site Scripting vulnerability in multiple products
The GitHub Security Lab discovered sixteen ways to exploit a cross-site scripting vulnerability in nbconvert.
network
low complexity
jupyter debian CWE-79
5.4
2022-06-14 CVE-2022-29238 Forced Browsing vulnerability in Jupyter Notebook
Jupyter Notebook is a web-based notebook environment for interactive computing.
network
low complexity
jupyter CWE-425
4.0
2022-06-09 CVE-2022-31027 Authorization Bypass Through User-Controlled Key vulnerability in Jupyter Oauthenticator
OAuthenticator is an OAuth token library for the JupyerHub login handler.
network
low complexity
jupyter CWE-639
4.0
2022-03-31 CVE-2022-24758 Information Exposure Through Log Files vulnerability in Jupyter Notebook
The Jupyter notebook is a web-based notebook environment for interactive computing.
network
low complexity
jupyter CWE-532
5.0