CVE-2019-10856 PUBLISHED

In Jupyter Notebook before 5.7.8, an open redirect can occur via an empty netloc. This issue exists because of an incomplete fix for CVE-2019-10255.

EPSS 0.17% · 37.7th percentile

Risk Scores

EPSS Score
0.17%
37.7th percentile

Affected Products

VendorProductVersions
Ubuntu:20.04:LTSjupyter-notebook6.0.0-1, 6.0.0-2, 6.0.2-1
Ubuntu:22.04:LTSjupyter-notebook0, 6.4.8-1, 6.4.5-4
Ubuntu:25.10jupyter-notebook6.4.13-5ubuntu0.1, 0, 6.4.13-5
Ubuntu:18.04:LTSjupyter-notebook5.1.0-2, 4.2.3-4, 0
Ubuntu:Pro:24.04:LTSjupyter-notebook6.4.12-2.2ubuntu1+esm1, 0, 6.4.12-2.2

Timeline

References

Open in Interactive Console →