CVE-2024-43805
Last modified
CVE-2024-43805 is a medium-severity vulnerability rated 6.1/10 on the CVSS scale. jupyterlab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook Architecture. This vulnerability depends on user interaction by opening a malicious notebook with Markdown cells, or Markdown file using JupyterLab preview feature. EPSS estimates a 0.37% chance of exploitation in the next 30 days.
Description
jupyterlab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook Architecture. This vulnerability depends on user interaction by opening a malicious notebook with Markdown cells, or Markdown file using JupyterLab preview feature. A malicious user can access any data that the attacked user has access to as well as perform arbitrary requests acting as the attacked user. JupyterLab v3.6.8, v4.2.5 and Jupyter Notebook v7.2.2 have been patched to resolve this issue. Users are advised to upgrade. There is no workaround for the underlying DOM Clobbering susceptibility. However, select plugins can be disabled on deployments which cannot update in a timely fashion to minimise the risk. These are: 1. `@jupyterlab/mathjax-extension:plugin` - users will loose ability to preview mathematical equations. 2. `@jupyterlab/markdownviewer-extension:plugin` - users will loose ability to open Markdown previews. 3. `@jupyterlab/mathjax2-extension:plugin` (if installed with optional `jupyterlab-mathjax2` package) - an older version of the mathjax plugin for JupyterLab 4.x. To disable these extensions run: ```jupyter labextension disable @jupyterlab/markdownviewer-extension:plugin && jupyter labextension disable @jupyterlab/mathjax-extension:plugin && jupyter labextension disable @jupyterlab/mathjax2-extension:plugin ``` in bash.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Jupyter | Jupyterlab | < 3.6.8 |
| Jupyter | Jupyterlab | >= 4.0.0, < 4.2.5 |
| Jupyter | Notebook | >= 7.0.0, < 7.2.2 |
References
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2024-43805?
How severe is CVE-2024-43805?
How do I fix CVE-2024-43805?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2024
- CVE-2024-43799Send is a library for streaming files from the file system a…4.7
- CVE-2024-43800serve-static serves static files. serve-static passes untrus…4.7
- CVE-2024-43801Jellyfin is an open source self hosted media server. The Jel…5.4
- CVE-2024-43802Vim is an improved version of the unix vi text editor. When …4.5
- CVE-2024-43803The Bare Metal Operator (BMO) implements a Kubernetes API fo…4.9
- CVE-2024-43804Roxy-WI is a web interface for managing Haproxy, Nginx, Apac…8.8
- CVE-2024-43806Rustix is a set of safe Rust bindings to POSIX-ish APIs. Whe…6.5
- CVE-2024-43807In JetBrains TeamCity before 2024.07.1 multiple stored XSS w…5.4
- CVE-2024-43808In JetBrains TeamCity before 2024.07.1 self XSS was possible…5.4
- CVE-2024-43809In JetBrains TeamCity before 2024.07.1 reflected XSS was pos…6.1
- CVE-2024-4381The CB (legacy) WordPress plugin through 0.9.4.18 does not s…4.8
- CVE-2024-43810In JetBrains TeamCity before 2024.07.1 reflected XSS was pos…5.4
Are you affected by CVE-2024-43805?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
