VulnSea

notebook vulnerabilities

CVEs whose affected-version data names the notebook package (npm, pip). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

10 CVEsRSS

CVE-2026-42557Critical· 9.6
4mo ago

JupyterLab's command linker attributes in HTML enable one-click command execution from untrusted content

JupyterLab's command linker attributes in HTML enable one-click command execution from untrusted content

Midnightjupyterlab · jupyterlabEPSS 0.37%via OSV
CVE-2026-40171High· 8.8
4mo ago

Jupyter Notebook Vulnerable to Authentication Token Theft via CommandLinker XSS

Jupyter Notebook Vulnerable to Authentication Token Theft via CommandLinker XSS

Twilightjupyter-notebook · @jupyter-notebook/help-extensionEPSS 0.48%via OSV
CVE-2024-43805High· 7.6
2y ago

HTML injection in Jupyter Notebook and JupyterLab leading to DOM Clobbering

HTML injection in Jupyter Notebook and JupyterLab leading to DOM Clobbering

Twilightjupyterlab · jupyterlabEPSS 0.40%via OSV
CVE-2024-22420Medium· 6.5
2y ago

JupyterLab vulnerable to SXSS in Markdown Preview

JupyterLab vulnerable to SXSS in Markdown Preview

Sunlitjupyterlab · jupyterlabEPSS 0.57%via OSV
CVE-2024-22421High· 7.6
2y ago

JupyterLab vulnerable to potential authentication and CSRF tokens leak

JupyterLab vulnerable to potential authentication and CSRF tokens leak

Twilightjupyterlab · jupyterlabEPSS 0.67%via OSV
CVE-2019-9644Medium· 5.4
4y ago

Improper Neutralization of Input During Web Page Generation in Jupyter Notebook

Improper Neutralization of Input During Web Page Generation in Jupyter Notebook

Sunlitjupyter-notebook · jupyter-notebookEPSS 1.9%via OSV
CVE-2021-32798Critical· 10.0
5y ago

Special Element Injection in notebook

Special Element Injection in notebook

Midnightnotebook · notebookEPSS 2.1%via OSV
CVE-2021-32797High· 7.4
5y ago

JupyterLab: XSS due to lack of sanitization of the action attribute of an html <form>

JupyterLab: XSS due to lack of sanitization of the action attribute of an html <form>

Twilightjupyterlab · jupyterlabEPSS 2.7%via OSV
CVE-2020-26215Medium· 4.4
5y ago

Open redirect in Jupyter Notebook

Open redirect in Jupyter Notebook

Sunlitnotebook · notebookEPSS 1.2%via OSV
CVE-2019-10255Medium· 6.1
7y ago

Open Redirect vulnerability in jupyterhub and notebook

Open Redirect vulnerability in jupyterhub and notebook

Sunlitnotebook · notebookEPSS 2.1%via OSV
notebook vulnerabilities (CVEs) · VulnSea