Jupyter's vulnerability footprint concentrates in a focused but broadly deployed ecosystem of web-based data-science and notebook-collaboration platforms, spanning Notebook, JupyterLab, JupyterHub, and related authentication components that sit at the boundary between user code execution and web access. Vulnerabilities affecting the vendor skew toward serious outcomes, with a meaningful share reaching critical severity, reflecting the exposure inherent to interactive execution environments that often run with elevated privileges and handle user-supplied code and content. The exposure recurs through web-layer weakness classes including cross-site scripting, open redirect, path traversal, and CSRF, patterns typical of Python-based web applications where input sanitization and session management are critical to isolating execution contexts and protecting notebook state. Defenders should treat Jupyter deployments as high-value targets—particularly internet-facing instances and those integrated with shared infrastructure—and prioritize patching, since the platform's role in data science and machine-learning pipelines means compromise can affect downstream analytics and model integrity. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Jupyter over time
Signals from CVEs in this vendor scope (64 CVEs).
64 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-54527CRITICAL JupyterLab Git is a Git extension for JupyterLab. From 0.30.0b3 before 0.54.0, the PlainTextDiff.ts createHeader() method passes Git filenames directly to innerHTML when rendering | Jul 8, 2026 | 9.0 | 40 | NO | NO |
CVE-2026-42557CRITICAL jupyterlab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook Architecture. Prior to 4.5.7, JupyterLab's HTML sanitizer allowlis | May 13, 2026 | 9.6 | 37 | NO | NO |
CVE-2026-42266HIGH JupyterLab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook Architecture. From 4.0.0 to 4.5.6, the allow-list of extensions th | May 13, 2026 | 8.8 | 37 | NO | NO |
CVE-2026-35397HIGH Jupyter Server is the backend for Jupyter web applications. In versions 2.17.0 and earlier, a path traversal vulnerability in the REST API allows an authenticated user to escape th | May 5, 2026 | 8.8 | 36 | NO | NO |
CVE-2026-5422HIGH A path traversal vulnerability exists in jupyter-server version 2.17.0 due to an incorrect root directory boundary check in the _get_os_path() function within jupyter_server/servic | Jun 2, 2026 | 8.1 | 34 | NO | NO |
CVE-2026-6657HIGH A vulnerability in jupyter-server versions 1.12.0 through 2.17.0 allows an attacker to bypass CORS origin validation when the `allow_origin_pat` configuration is used. The issue ar | Jun 3, 2026 | 8.8 | 33 | NO | NO |
CVE-2026-40110HIGH Jupyter Server is the backend for Jupyter web applications. In versions 2.17.0 and earlier, the Origin header validation uses Python's re.match() to check incoming origins against | May 5, 2026 | 7.3 | 32 | NO | NO |
CVE-2024-39700CRITICAL JupyterLab extension template is a `copier` template for JupyterLab extensions. Repositories created using this template with `test` option include `update-integration-tests.yml` | Jul 16, 2024 | 9.8 | 31 | NO | NO |
CVE-2021-32798CRITICAL The Jupyter notebook is a web-based notebook environment for interactive computing. In affected versions untrusted notebook can execute code on load. Jupyter Notebook uses a deprec | Aug 9, 2021 | 9.6 | 31 | NO | NO |
CVE-2021-32797CRITICAL JupyterLab is a user interface for Project Jupyter which will eventually replace the classic Jupyter Notebook. In affected versions untrusted notebook can execute code on load. In | Aug 9, 2021 | 9.6 | 31 | NO | NO |
Signals from CVEs in this vendor scope (64 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Jupyter.
Media articles that mention a CVE ID that affects a product developed by Jupyter — matched by CVE ID, not by vendor name.