PT-2019-11663 · Google+4 · Google Chrome+5
CVE-2019-10255
·
Publicado
2019-03-28
·
Atualizado
2026-07-09
CVSS v3.1
6.1
Média
| Vetor | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions:
Jupyter Notebook versions prior to 5.7.7
JupyterHub versions prior to 0.9.5
Description:
The issue allows crafted links to the login page to redirect to a malicious site after successful login. This affects all browsers in Jupyter Notebook and some browsers, such as Chrome and Firefox, in JupyterHub. Servers running on a base url prefix are not affected.
Recommendations:
For Jupyter Notebook versions prior to 5.7.7, update to version 5.7.7 or later.
For JupyterHub versions prior to 0.9.5, update to version 0.9.5 or later.
Correção
Open Redirect
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Google Chrome
Firefox
Jupyter Notebook
Jupyterhub
Linuxmint
Ubuntu