Lucene search

K
osvGoogleOSV:GHSA-66GW-5XPF-GFP5
HistoryMay 13, 2022 - 1:31 a.m.

Improper Neutralization of Input During Web Page Generation in IPython

2022-05-1301:31:05
Google
osv.dev
13
cross-site scripting
ipython
web script
html
json error
notebooks path
vulnerability

EPSS

0.002

Percentile

57.6%

Cross-site scripting (XSS) vulnerability in IPython before 3.2 allows remote attackers to inject arbitrary web script or HTML via vectors involving JSON error messages and the /api/notebooks path.

EPSS

0.002

Percentile

57.6%