Database/AI/ML frameworks & serving
Jupyter Server: Path traversal in the REST API
CVSS 8.8CVE-2026-35397AI/ML frameworks & servingcurated
Impact
Path traversal in the REST API
Who can reach it
Notebook user or anyone reaching an exposed notebook port
What to do
Upgrade past 2.17.0. Notebook servers on GPU nodes are frequently exposed with token auth only
References
Related entries
- LiteLLM (`/guardrails/test_custom_code`): RCE via bytecode rewritingCVE-2026-40217 · LiteLLM (`/guardrails/test_custom_code`)High
- Ray Data (Arrow extension types): Custom Arrow extension types deserialized unsafelyCVE-2026-41486 · Ray Data (Arrow extension types)High
- JupyterLab: extension allow-list not enforced, letting a notebook user install arbitrary PyPI packagesCVE-2026-42266 · JupyterLab (PyPI Extension Manager, allowed_extensions_uris allow-list)High
- LiteLLM proxy: Two endpoints allow privilege escalation / unauthorized actionCVE-2026-42271 · LiteLLM proxyHigh
- BentoML (`bentofile.yaml`): Malicious build manifestCVE-2026-44346 · BentoML (`bentofile.yaml`)High
- ChromaDB (SimpleRBAC): Authorization provider evaluates permissions incorrectlyCVE-2026-45831 · ChromaDB (SimpleRBAC)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.