Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In Jupyter Notebook before 5.4.1, a maliciously forged notebook file can bypass sanitization to execute JavaScript in the notebook context. Specifically, invalid HTML is 'fixed' by jQuery after sanitization, making it dangerous.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Jupyter Notebook 权限许可和访问控制问题漏洞
Vulnerability Description
Jupyter Notebook是一套用于创建、共享代码和说明性文本文档的开源Web应用程序。 Jupyter Notebook 5.4.1之前版本中存在权限许可和访问控制问题漏洞。攻击者可借助恶意伪造的记事本文件利用该漏洞在记事本上下文中执行JavaScript代码。
CVSS Information
N/A
Vulnerability Type
N/A