Source |
CVE Liste |
Identifiant |
3284542 |
Date de publication |
2021-08-25 18:15:08 (vue: 2021-08-25 21:05:40) |
Titre |
CVE-2021-39160 |
Texte |
nbgitpuller is a Jupyter server extension to sync a git repository one-way to a local path. Due to unsanitized input, visiting maliciously crafted links could result in arbitrary code execution in the user environment. This has been resolved in version 0.10.2 and all users are advised to upgrade. No work around exist for users who can not upgrade. |
Notes |
|
Envoyé |
Oui |
Condensat |
2021 39160 advised all arbitrary are around been can code could crafted cve due environment execution exist extension git has input jupyter links local maliciously nbgitpuller not one path repository resolved result server sync unsanitized upgrade user users version visiting way who work |
Tags |
|
Stories |
|
Move |
|