Jupyter Notebook Stored XSS (CVE-2026-40171) Steals Auth Tokens via Help Extension
Security AdvisoryCVE-2026-40171HighJupyter
Affected:
- @jupyter-notebook/help-extension >=7.0.0, <=7.5.5
- @jupyterlab/help-extension <4.5.6
- jupyterlab <4.5.6
- notebook >=7.0.0, <=7.5.5
Fixed in:
- 7.5.6
- 4.5.7
Referenced CVEs: CVE-2026-40171
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from github.com, cleaned by our LLM pipeline, and translated to English. View original.