Логотип exploitDog
bind:CVE-2021-32797
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-32797

Количество 4

Количество 4

nvd логотип

CVE-2021-32797

больше 4 лет назад

JupyterLab is a user interface for Project Jupyter which will eventually replace the classic Jupyter Notebook. In affected versions untrusted notebook can execute code on load. In particular JupyterLab doesn’t sanitize the action attribute of html `<form>`. Using this it is possible to trigger the form validation outside of the form itself. This is a remote code execution, but requires user action to open a notebook.

CVSS3: 7.4
EPSS: Низкий
debian логотип

CVE-2021-32797

больше 4 лет назад

JupyterLab is a user interface for Project Jupyter which will eventual ...

CVSS3: 7.4
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2022:10075-1

больше 3 лет назад

Security update for python-jupyterlab

EPSS: Низкий
github логотип

GHSA-4952-p58q-6crx

больше 4 лет назад

JupyterLab: XSS due to lack of sanitization of the action attribute of an html <form>

CVSS3: 7.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-32797

JupyterLab is a user interface for Project Jupyter which will eventually replace the classic Jupyter Notebook. In affected versions untrusted notebook can execute code on load. In particular JupyterLab doesn’t sanitize the action attribute of html `<form>`. Using this it is possible to trigger the form validation outside of the form itself. This is a remote code execution, but requires user action to open a notebook.

CVSS3: 7.4
1%
Низкий
больше 4 лет назад
debian логотип
CVE-2021-32797

JupyterLab is a user interface for Project Jupyter which will eventual ...

CVSS3: 7.4
1%
Низкий
больше 4 лет назад
suse-cvrf логотип
openSUSE-SU-2022:10075-1

Security update for python-jupyterlab

1%
Низкий
больше 3 лет назад
github логотип
GHSA-4952-p58q-6crx

JupyterLab: XSS due to lack of sanitization of the action attribute of an html <form>

CVSS3: 7.4
1%
Низкий
больше 4 лет назад

Уязвимостей на страницу