Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3195-1 | jupyter-core security update |
Debian DSA |
DSA-5422-1 | jupyter-core security update |
EUVD |
EUVD-2022-0129 | Jupyter Core is a package for the core common functionality of Jupyter projects. Jupyter Core prior to version 4.11.2 contains an arbitrary code execution vulnerability in `jupyter_core` that stems from `jupyter_core` executing untrusted files in CWD. This vulnerability allows one user to run code as another. Version 4.11.2 contains a patch for this issue. There are no known workarounds. |
Github GHSA |
GHSA-m678-f26j-3hrp | Execution with Unnecessary Privileges in JupyterApp |
Ubuntu USN |
USN-6153-1 | Jupyter Core vulnerability |
Thu, 24 Apr 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-04-23T16:43:15.864Z
Reserved: 2022-09-02T00:00:00.000Z
Link: CVE-2022-39286
Updated: 2024-08-03T12:00:43.783Z
Status : Modified
Published: 2022-10-26T20:15:10.490
Modified: 2024-11-21T07:17:57.623
Link: CVE-2022-39286
No data.
OpenCVE Enrichment
No data.
Debian DLA
Debian DSA
EUVD
Github GHSA
Ubuntu USN