CRITICAL 9.8 PyPI

Improper Input Validation in Jupyter Notebook

GHSA-92mr-v722-f48m · CVE-2015-7337 · PYSEC-2015-25 · PYSEC-2015-27

Published · Modified

AI SAST

Find this class of vulnerability in your own code

Corgea's AI-native static analysis detects vulnerabilities like this one across your repositories, ranks them by exploitability, and returns review-ready fixes.

Description

The editor in IPython Notebook before 3.2.2 and Jupyter Notebook 4.0.x before 4.0.5 allows remote attackers to execute arbitrary JavaScript code via a crafted file, which triggers a redirect to files/, related to MIME types.

Ready to move

Start Securing

Free, no credit card | First findings in minutes