Description
Jupyter Notebook before version 6.1.5 has an Open redirect vulnerability. A maliciously crafted link to a notebook server could redirect the browser to a different website. All notebook servers are technically affected, however, these maliciously crafted links can only be reasonably made for known notebook server hosts. A link to your notebook server may appear safe, but ultimately redirect to a spoofed server on the public internet. The issue is patched in version 6.1.5.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-2477-1 | jupyter-notebook security update |
EUVD |
EUVD-2020-0116 | Jupyter Notebook before version 6.1.5 has an Open redirect vulnerability. A maliciously crafted link to a notebook server could redirect the browser to a different website. All notebook servers are technically affected, however, these maliciously crafted links can only be reasonably made for known notebook server hosts. A link to your notebook server may appear safe, but ultimately redirect to a spoofed server on the public internet. The issue is patched in version 6.1.5. |
Github GHSA |
GHSA-c7vm-f5p4-8fqh | Open redirect in Jupyter Notebook |
Ubuntu USN |
USN-5585-1 | Jupyter Notebook vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-04T15:49:07.159Z
Reserved: 2020-10-01T00:00:00.000Z
Link: CVE-2020-26215
No data.
Status : Modified
Published: 2020-11-18T22:15:11.947
Modified: 2024-11-21T05:19:32.947
Link: CVE-2020-26215
No data.
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
EUVD
Github GHSA
Ubuntu USN