Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

1 advisory

Loading
Jupyter Server: Stored XSS in `NbconvertFileHandler` / `NbconvertPostHandler` via missing `sandbox` CSP Critical
CVE-2026-44727 was published for jupyter-server (pip) Jun 18, 2026
pikaball Credited to pikaball, y011d4, 0xHunSec, Yann-P, Carreau, and owen-harborcoat y011d4 y011d4
0xHunSec 0xHunSec Yann-P Yann-P Carreau Carreau owen-harborcoat owen-harborcoat
ProTip! Advisories are also available from the GraphQL API