Опубликовано: 20 сент. 2017
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 4.3
CVSS3: 6.1
Описание
Cross-site scripting (XSS) vulnerability in IPython before 3.2 allows remote attackers to inject arbitrary web script or HTML via vectors involving JSON error messages and the /api/notebooks path.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | ignored | end of life |
| bionic | not-affected | 2.4.1-1 |
| cosmic | not-affected | 2.4.1-1 |
| devel | not-affected | 2.4.1-1 |
| disco | not-affected | 2.4.1-1 |
| eoan | not-affected | 2.4.1-1 |
| esm-apps/bionic | not-affected | 2.4.1-1 |
| esm-apps/focal | not-affected | 2.4.1-1 |
| esm-apps/jammy | not-affected | 2.4.1-1 |
| esm-apps/xenial | not-affected | 2.4.1-1 |
Показывать по
10
EPSS
Процентиль: 74%
0.00811
Низкий
4.3 Medium
CVSS2
6.1 Medium
CVSS3
Связанные уязвимости
CVSS3: 6.1
nvd
больше 8 лет назад
Cross-site scripting (XSS) vulnerability in IPython before 3.2 allows remote attackers to inject arbitrary web script or HTML via vectors involving JSON error messages and the /api/notebooks path.
CVSS3: 6.1
debian
больше 8 лет назад
Cross-site scripting (XSS) vulnerability in IPython before 3.2 allows ...
CVSS3: 6.1
github
больше 3 лет назад
Improper Neutralization of Input During Web Page Generation in IPython
EPSS
Процентиль: 74%
0.00811
Низкий
4.3 Medium
CVSS2
6.1 Medium
CVSS3