Lucene search

K
osvGoogleOSV:PYSEC-2018-18
HistoryNov 18, 2018 - 5:29 p.m.

PYSEC-2018-18

2018-11-1817:29:00
Google
osv.dev
13

EPSS

0.001

Percentile

47.0%

Jupyter Notebook before 5.7.2 allows XSS via a crafted directory name because notebook/static/tree/js/notebooklist.js handles certain URLs unsafely.