Launch Week Day 1: Announcing Security Design Review
pypi

jupyter-server

View on pypi registry
24 Total advisories
24 Vulnerabilities
0 Malware

Vulnerabilities

HIGH 7.5
PyPI

CVE-2024-35178

CVE-2024-35178

HIGH 7.5
PyPI

CVE-2024-35178

Jupyter server on Windows discloses Windows user password hash

MEDIUM 6.8
PyPI

CVE-2026-40934

Jupyter Server's Authentication Cookies Remain Valid After Password Reset and Server Restart

HIGH 7.1
PyPI

CVE-2026-35397

Jupyter Server: Path Traversal via incorrect startswith() root directory check allows access to sibling directories

UNKNOWN
PyPI

CVE-2025-61669

Jupyter Server has an open redirection vulnerability in `next` query parameter

MEDIUM 6.8
PyPI

CVE-2026-40934

CVE-2026-40934

HIGH 8.8
PyPI

CVE-2026-35397

CVE-2026-35397

MEDIUM 6.1
PyPI

CVE-2025-61669

CVE-2025-61669

MEDIUM 6.1
PyPI

CVE-2020-26275

Jupyter Server open redirect vulnerability

UNKNOWN
PyPI

CVE-2020-26275

CVE-2020-26275

MEDIUM 6.1
PyPI

CVE-2020-26275

CVE-2020-26275

UNKNOWN
PyPI

CVE-2026-40110

Jupyter Server has a CORS Origin Validation Bypass via `re.match()` in `allow_origin_pat` (from huntr)

MEDIUM 4.1
PyPI

CVE-2020-26232

Open redirect in Jupyter Server

MEDIUM 4.6
PyPI

CVE-2023-40170

cross-site inclusion (XSSI) of files in jupyter-server

MEDIUM 4.3
PyPI

CVE-2023-49080

jupyter-server errors include tracebacks with path information

MEDIUM 6.1
PyPI

CVE-2023-39968

Open Redirect Vulnerability in jupyter-server

HIGH 7.1
PyPI

CVE-2022-29241

Jupyter server Token bruteforcing

MEDIUM 4.3
PyPI

CVE-2023-49080

CVE-2023-49080

MEDIUM 6.1
PyPI

CVE-2023-40170

CVE-2023-40170

MEDIUM 6.1
PyPI

CVE-2023-39968

CVE-2023-39968

UNKNOWN
PyPI

CVE-2022-29241

CVE-2022-29241

UNKNOWN
PyPI

CVE-2022-24757

CVE-2022-24757

HIGH 7.5
PyPI

CVE-2022-24757

Insertion of Sensitive Information into Log File in Jupyter notebook

UNKNOWN
PyPI

CVE-2020-26232

CVE-2020-26232

Ready to move

Start Securing

Free, no credit card | First findings in minutes