cvedb.io
CVE-2019-10255
MEDIUM · CVSS 6.1
EPSS exploitation probability: 0%
Published 2019-03-28T16:29:00.567 · Last modified 2026-06-17T02:10:35.270

Summary

An Open Redirect vulnerability for all browsers in Jupyter Notebook before 5.7.7 and some browsers (Chrome, Firefox) in JupyterHub before 0.9.5 allows crafted links to the login page, which will redirect to a malicious site after successful login. Servers running on a base_url prefix are not affected.

Affected products

jupyter — jupyterhub

Does this affect you?

Add your gear to cvedb and we'll alert you only when jupyter ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.