Database/AI/ML frameworks & serving
Jupyter Notebook (untrusted notebooks): Untrusted notebook executes JavaScript in the user's session on open
CVE-2021-32798AI/ML frameworks & servingcurated
Impact
Untrusted notebook executes JavaScript in the user's session on open
Who can reach it
Customer-supplied .ipynb opened by another user or an operator
What to do
Upgrade. Notebook files shared between tenants are active content
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.