Home/Product/jupyter server
Product

jupyter server

12 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-40934
< 2.18.0
Jupyter Server is the backend for Jupyter web applications. In versions 2.17.0 and earlier, the secret used to sign authentication
6.8MEDIUM
CVE-2026-40110
< 2.18.0
Jupyter Server is the backend for Jupyter web applications. In versions 2.17.0 and earlier, the Origin header validation uses Pyth
7.3HIGH
CVE-2026-35397
< 2.18.0
Jupyter Server is the backend for Jupyter web applications. In versions 2.17.0 and earlier, a path traversal vulnerability in the
8.8HIGH
CVE-2025-61669
< 2.18.0
Jupyter Server is the backend for Jupyter web applications. In jupyter_server versions through 2.17.0, the next query parameter in
6.1MEDIUM
CVE-2024-35178
< 2.14.1
The Jupyter Server provides the backend for Jupyter web applications. Jupyter Server on Windows has a vulnerability that lets unau
7.5HIGH
CVE-2023-49080
< 2.11.2
The Jupyter Server provides the backend (i.e. the core services, APIs, and REST endpoints) for Jupyter web applications like Jupyt
3.5LOW
CVE-2023-40170
< 2.7.2
jupyter-server is the backend for Jupyter web applications. Improper cross-site credential checks on /files/ URLs could allow ex
4.6MEDIUM
CVE-2023-39968
< 2.7.2
jupyter-server is the backend for Jupyter web applications. Open Redirect Vulnerability. Maliciously crafted login links to known
4.3MEDIUM
CVE-2022-29241
< 1.17.0
Jupyter Server provides the backend (i.e. the core services, APIs, and REST endpoints) for Jupyter web applications like Jupyter N
7.1HIGH
CVE-2022-24757
< 1.15.4
The Jupyter Server provides the backend (i.e. the core services, APIs, and REST endpoints) for Jupyter web applications. Prior to
7.5HIGH
CVE-2020-26275
< 1.1.1
The Jupyter Server provides the backend (i.e. the core services, APIs, and REST endpoints) for Jupyter web applications like Jupyt
6.1MEDIUM
CVE-2020-26232
< 1.0.6
Jupyter Server before version 1.0.6 has an Open redirect vulnerability. A maliciously crafted link to a jupyter server could redir
4.1MEDIUM
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin