Min RK
33 exploits
Active since Sep 2015
JupyterHub < 4.1.0 - Cross-Site Scripting via Malicious Subdomain
CVSS 8.1
jupyter/oauthenticator < 16.3.0 - Improper Authorization via GoogleOAuthenticator.hosted_domain
CVSS 7.5
jupyter_server < 2.14.1 - Unauthenticated NTLMv2 Password Hash Exposure
CVSS 7.5
oauthenticator < 16.3.1 - Incorrect Authorization via GlobusOAuthenticator Configuration
CVSS 8.1
JupyterHub <4.1.6, 5.1.0 - Privilege Escalation
CVSS 7.2
nbgrader 0.9.4 - Exposure of Sensitive Data via Frame Ancestors Misconfiguration
Jupyter Core <5.8.0 - Info Disclosure
CVSS 7.3
jupyter/nbconvert <= 7.16.6 - Unauthenticated Remote Code Execution via SVG to PDF Conversion
CVSS 7.8