Security

Vulnerabilities

Real-time alerts of vulnerabilities across monitored open-source ecosystems.

Ecosystems covered

4

Alpm, Debian, Npm & more

Total vulnerabilities tracked

71

From global vulnerability databases

Exclude malware
Package jupyter

9.1

Critical

Ecosystem: PyPI

Package: jupyter_enterprise_gateway

9.1

Critical

Ecosystem: PyPI

Package: jupyter-enterprise-gateway

8.4

High

Ecosystem: PyPI

Package: jupyter_enterprise_gateway

4.0

Medium

Ecosystem: Debian

Package: jupyter-server

8.1

High

Ecosystem: Debian

Package: jupyter-server

5.2

Medium

Ecosystem: Npm

Package: @mlspace/env-jupyter-server

FLAT-NFN5F (CVE-2026-44724)

Remote command execution In jupyterlab

5.8

Medium

Ecosystem: Debian

Package: jupyterlab

FLAT-1OCHT (CVE-2026-40864)

Cross-site request forgery In jupyterhub

1.3

Low

Ecosystem: Debian

Package: jupyterhub

6.1

Medium

Ecosystem: Debian

Package: jupyterlab

FLAT-T311I (CVE-2026-42266)

Lack of data validation In jupyterlab

6.1

Medium

Ecosystem: Debian

Package: jupyterlab

5.7

Medium

Ecosystem: Debian

Package: jupyter-notebook

FLAT-3WPK2 (CVE-2026-40934)

Session Fixation In jupyter-server

4.9

Medium

Ecosystem: Debian

Package: jupyter-server

5.0

Medium

Ecosystem: Debian

Package: jupyter-server

5.0

Medium

Ecosystem: Debian

Package: jupyter-server

2.0

Low

Ecosystem: PyPI

Package: jupyter-server

1.2

Low

Ecosystem: Alpm

Package: jupyter-notebook

1.2

Low

Ecosystem: Alpm

Package: jupyter-notebook

2.3

Low

Ecosystem: Alpm

Package: jupyterlab

7.7

High

Ecosystem: Alpm

Package: jupyter-notebook

1.2

Low

Ecosystem: Debian

Package: jupyterhub

6.3

Medium

Ecosystem: PyPI

Package: jupyterhub-ltiauthenticator

FLAT-A0HMT (CVE-2026-26318)

Remote command execution In jupyterlab

5.8

Medium

Ecosystem: Debian

Package: jupyterlab

FLAT-HRHTG (CVE-2026-26280)

OS Command Injection In jupyterlab

5.9

Medium

Ecosystem: Debian

Package: jupyterlab

FLAT-O9X21 (CVE-2025-59842)

Reverse tabnabbing In jupyterlab

1.2

Low

Ecosystem: Debian

Package: jupyterlab

5.2

Medium

Ecosystem: PyPI

Package: caas-jupyter-tools

5.2

Medium

Ecosystem: PyPI

Package: foundry-jupyter-extension

2.0

Low

Ecosystem: PyPI

Package: jupyter_core

6.1

Medium

Ecosystem: PyPI

Package: jupyter-remote-desktop-proxy

FLAT-NTV29 (CVE-2025-30370)

OS Command Injection In jupyterlab-git

0.8

Low

Ecosystem: PyPI

Package: jupyterlab-git

5.2

Medium

Ecosystem: Npm

Package: jupyter-optmwidgets

5.2

Medium

Ecosystem: Npm

Package: amazon-codewhisperer-jupyterlab-ext

8.1

High

Ecosystem: PyPI

Package: jupyterhub-ltiauthenticator

5.2

Medium

Ecosystem: Npm

Package: jupyter-binding

5.9

Medium

Ecosystem: Debian

Package: jupyterlab

5.2

Medium

Ecosystem: Npm

Package: jupyterhub-admin-react

2.3

Low

Ecosystem: PyPI

Package: jupyterlite-core

6.8

Medium

Ecosystem: PyPI

Package: jupyterlab

FLAT-37JUR (CVE-2024-41942)

Excessive privileges In jupyterhub

6.1

Medium

Ecosystem: Debian

Package: jupyterhub

5.2

Medium

Ecosystem: PyPI

Package: jupyter-pytest-fi-console

6.1

Medium

Ecosystem: PyPI

Package: jupyter-server-proxy

6.6

Medium

Ecosystem: PyPI

Package: jupyter_server

2.7

Low

Ecosystem: PyPI

Package: jupyter-scheduler

1.3

Low

Ecosystem: PyPI

Package: jupyterhub

8.4

High

Ecosystem: PyPI

Package: jupyter-server-proxy

4.9

Medium

Ecosystem: Debian

Package: jupyterlab

5.1

Medium

Ecosystem: Debian

Package: jupyterlab

7.7

High

Ecosystem: PyPI

Package: jupyter-lsp

5.2

Medium

Ecosystem: Npm

Package: jupyter_matlab_labextension

5.2

Medium

Ecosystem: Npm

Package: jupyter-notebook-deps

1.3

Low

Ecosystem: PyPI

Package: jupyter-server

1.3

Low

Ecosystem: PyPI

Package: jupyter-server

1.2

Low

Ecosystem: PyPI

Package: jupyter-server

1.3

Low

Ecosystem: Debian

Package: jupyter-core

1.3

Low

Ecosystem: Debian

Package: jupyter-core

FLAT-BVZKM (CVE-2022-39286)

Excessive privileges In jupyter-core

6.3

Medium

Ecosystem: PyPI

Package: jupyter-core

FLAT-BV0K4 (CVE-2022-29241)

Session Fixation In jupyter-server

4.8

Medium

Ecosystem: PyPI

Package: jupyter-server

FLAT-C7K7R (CVE-2020-36191)

Cross-site request forgery In jupyterhub

4.0

Medium

Ecosystem: PyPI

Package: jupyterhub

1.2

Low

Ecosystem: PyPI

Package: jupyter-notebook

6.6

Medium

Ecosystem: PyPI

Package: jupyter-server

4.4

Medium

Ecosystem: PyPI

Package: jupyter-server-proxy

2.3

Low

Ecosystem: Npm

Package: nbdime-jupyterlab

FLAT-B0ZWA (CVE-2021-41247)

Concurrent sessions In jupyterhub

1.2

Low

Ecosystem: PyPI

Package: jupyterhub

8.0

High

Ecosystem: PyPI

Package: jupyterhub-firstuseauthenticator

1.3

Low

Ecosystem: Debian

Package: jupyter-server

7.3

High

Ecosystem: PyPI

Package: jupyterhub-systemdspawner

1.3

Low

Ecosystem: Debian

Package: jupyter-notebook

1.2

Low

Ecosystem: PyPI

Package: jupyter-server

1.3

Low

Ecosystem: Debian

Package: jupyter-notebook

1.3

Low

Ecosystem: Debian

Package: jupyter-notebook

4.9

Medium

Ecosystem: PyPI

Package: jupyterhub-kubespawner

1.3

Low

Ecosystem: PyPI

Package: jupyterhub