JupyterHub
Security Risk Profile
85
/100
criticalSecurity Risk Score
Comprehensive risk assessment based on 4 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from July 17, 2020 to present
4
Total CVEs
4
Critical+High
0
Exploited
0
Unpatched
Threat Assessment
Avg CVSS
8.9
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
0
Critical/High
Risk Level
85/100
critical
Severity Distribution
Critical
2High
2Medium
0Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
OS Command Injection
1
2
Code Injection
1
Most Affected Products
1. IBM Cognos Analytics4
2. pip/jupyterhub-firstuseauthenticator1
3. JupyterHub First Use Authenticator1
4. pip/nbgitpuller1
5. JupyterHub nbgitpuller1
Recent Vulnerabilities
See more →CVE-2021-41194
CVSS 9.8critical
Improper Access Control in jupyterhub-firstuseauthenticator
10/28/2021
CVE-2021-39160
CVSS 9.6critical
Code injection in nbgitpuller
8/25/2021
CVE-2020-26261
CVSS 7.9high
user-readable api tokens in systemd units
12/9/2020
CVE-2020-15110
CVSS 8.1high
Possible pod name collisions in jupyterhub-kubespawner
7/17/2020
Monitor JupyterHub in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.