JupyterLab/notebook Command Linker CSP Bypass Allows Arbitrary Command Execution (GHSA-mqqg-9x36-vfcg)
Security Advisory
GHSA-mqqg-9x36-vfcg
Critical
JupyterLab
Affected:
- jupyterlab < 4.5.6
- notebook >=7.0.0, <= 7.5.5
Fixed in:
- jupyterlab 4.5.7+
- notebook 7.5.6+
Referenced CVEs:
CVE-2026-42557
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from github.com, cleaned by our LLM pipeline, and translated to English. View original.