Known vulnerabilities in Jupyter Server Proxy
Vendor:
jupyterhub
Software:
Jupyter Server Proxy
Software CPE:
cpe:2.3:a:jupyterhub:jupyter_server_proxy:*:*:*:*:*:*:*:*
Website:
https://github.com/jupyterhub
Total vulnerabilities:
3
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.2
Breakdown by Severity Chart
Vulnerabilities (3)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU92120 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2024-35225 |
CWE-79 | Low | 3.2.4, 4.2.0 | 14.06.2024 |
SB2024061417 |
||
| #VU87655 - Missing Authentication for Critical Function CVE-2024-28179 |
CWE-306 | High | 3.2.3, 4.1.1 | 20.03.2024 |
SB2024032030 |
||
| #VU60081 - Server-Side Request Forgery (SSRF) CVE-2022-21697 |
CWE-918 | Medium | 3.2.1 | 27.01.2022 |
SB2022012710 |