The Jupyter nbconvert tool has vulnerabilities that allow arbitrary file read and write operations when processing Jupyter notebooks.
Claims
The Jupyter nbconvert tool has vulnerabilities that allow arbitrary file read and write operations when processing Jupyter notebooks.
Parent: CybersecurityEntity: Jupyter nbconvert toolImpact: negativeDate: Apr 21, 2026Target: The Jupyter nbconvert tool's security
Source posts
๐จ EUVD-2026-24023
๐ Score: 6.5/10 (CVSS v3.1)
๐ฆ Product: nbconvert
๐ข Vendor: jupyter
๐
Updated: 2026-04-21
๐ The nbconvert tool, jupyter nbconvert, converts Jupyter notebooks to various other formats via Jinja templates. Versions 6.5 through 7.17.0 allow arbitrary file writes to locations outside the intended output directory when processing notebooks containing ...
๐ https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-24023
#cybersecurity #infosec #euvd #cve #vulnerability
1 boosts ยท 0 favs ยท 0 replies ยท Apr 21, 2026
#cybersecurity#infosec#euvd#cve#vulnerability
๐จ EUVD-2026-24025
๐ Score: 6.5/10 (CVSS v3.1)
๐ฆ Product: nbconvert
๐ข Vendor: jupyter
๐
Updated: 2026-04-21
๐ The nbconvert tool, jupyter nbconvert, converts Jupyter notebooks to various other formats via Jinja templates. In versions 6.5 through 7.17.0, when `HTMLExporter.embed_images=True`, nbconvert's markdown renderer allows arbitrary file read via path travers...
๐ https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-24025
#cybersecurity #infosec #euvd #cve #vulnerability
1 boosts ยท 0 favs ยท 0 replies ยท Apr 21, 2026
#cybersecurity#infosec#euvd#cve#vulnerability