CVE-2026-35397
EUVD-2026-2747005.05.2026, 20:16
Jupyter Server is the backend for Jupyter web applications. In versions 2.17.0 and earlier, a path traversal vulnerability in the REST API allows an authenticated user to escape the configured root_dir and access sibling directories whose names begin with the same prefix as the root_dir. For example, with a root_dir named "test", the API permits access to a sibling directory named "testtest" through a crafted request to the /api/contents endpoint using encoded path components. An attacker can read, write, and delete files in affected sibling directories. Multi-tenant deployments using predictable naming schemes are particularly at risk, as a user with a directory named "user1" could access directories for user10 through user19 and beyond. A user who can choose a single-character folder name could gain access to a significant number of sibling directories. Version 2.18.0 contains a fix. As a workaround, ensure folder names do not share a common prefix with any sibling directory.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| jupyter | jupyter_server | 𝑥 < 2.18.0 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| Red Hat | Red Hat Migration Toolkit for Applications 8.2 | 1784109883 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat OpenShift AI 3.4 | 1787076778 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat OpenShift AI 3.4 | 1787077779 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat OpenShift AI 3.4 | 1787076481 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat OpenShift AI 3.4 | 1787074331 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat OpenShift AI 3.4 | 1787073913 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat OpenShift AI 3.4 | 1787074078 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat OpenShift AI 3.4 | 1787073929 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat OpenShift AI 3.4 | 1787073605 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat OpenShift AI 3.4 | 1787073546 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat OpenShift AI 3.4 | 1787073717 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat OpenShift AI 3.4 | 1787073713 ≤ 𝑥 < * | ADP |
| Red Hat | Red Hat OpenShift AI 3.4 | 1787073593 ≤ 𝑥 < * | ADP |
Debian Releases
Ubuntu Releases
References