CVE-2026-33587

CRITICAL

Open Notebook Transformations - Server-Side Template Injection RCE

Title source: manual
STIX 2.1

Description

Lack of user input sanitisation in Open Notebook v1.8.3 allows the application user to execute Python code (and subsequently OS commands) on the docker container via Server-Side Template Injection (SSTI) for user-created transformations.

References (1)

Core 1

Scores

CVSS v3 10.0
EPSS 0.0023
EPSS Percentile 13.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-20
Status published
Products (2)
lfnovo/open-notebook < 1.8.4
Open Notebook/Open Notebook < 1.8.3
Published May 07, 2026
Tracked Since May 07, 2026