[Git][security-tracker-team/security-tracker][master] Add CVE-2025-59842/jupyterlab

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Sep 27 08:07:08 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
b45c42f3 by Salvatore Bonaccorso at 2025-09-27T09:06:16+02:00
Add CVE-2025-59842/jupyterlab

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -183,7 +183,9 @@ CVE-2025-59844 (SonarQube Server and Cloud is a static analysis solution for con
 CVE-2025-59843 (Flag Forge is a Capture The Flag (CTF) platform. From versions 2.0.0 t ...)
 	NOT-FOR-US: Flag Forge
 CVE-2025-59842 (jupyterlab is an extensible environment for interactive and reproducib ...)
-	TODO: check
+	- jupyterlab <unfixed>
+	NOTE: https://github.com/jupyterlab/jupyterlab/security/advisories/GHSA-vvfj-2jqx-52jm
+	NOTE: https://github.com/jupyterlab/jupyterlab/commit/88ef373039a8cc09f27d3814382a512d9033675c
 CVE-2025-59362 (Squid through 7.1 mishandles ASN.1 encoding of long SNMP OIDs. This oc ...)
 	TODO: check
 CVE-2025-59012 (Improper Neutralization of Input During Web Page Generation ('Cross-si ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b45c42f3950d166bb3a5a48e4042ff95012d05cb

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/b45c42f3950d166bb3a5a48e4042ff95012d05cb
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250927/a418f829/attachment.htm>


More information about the debian-security-tracker-commits mailing list