Database/AI/ML frameworks & serving
JupyterHub: Malicious subdomain tricks a user
CVE-2024-28233AI/ML frameworks & servingcurated
Impact
Malicious subdomain tricks a user → session takeover
Who can reach it
User visiting an attacker-controlled subdomain
What to do
Upgrade; per-user subdomain isolation is the mitigation and the vuln
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.