A vulnerability was found in JupyterHub up to 1.4 and classified as critical. Affected by this issue is some unknown processing of the component Tab Handler. Upgrading to version 1.5 eliminates this vulnerability. Applying the patch 5ac9e7f73a6e1020ffddc40321fc53336829fe27 is able to eliminate this problem. The bugfix is ready for download at github.com. The best possible mitigation is suggested to be upgrading to the latest version.
JupyterHub up to 1.4 Tab session expiration
- Virtual Patching
- November 5, 2021
- 11:04 am
CVE-2022-1840 : Home Clean Services Management System Stored Cross-Site Scripting (XSS)
Description Persistent XSS (or Stored XSS) attack is one of the three major categories of XSS attacks, the others being
CVE-2022-1558 : Multiple Stored Cross-Site Scripting vulnerabilities in WordPress curtain plugin 1.0.2
Description Several Cross-Site Scripting vulnerabilities in the Curtain WordPress plugin. Due to these Cross-Site Scripting vulnerabilities, an attacker would be
CVE-2022-AVAST2 : Self-Defense Bypass via Repairing Function
Description It was noted that there is security checking to prevent some of the Avast processes from loading of undesired/unsigned