Skip to content

IPython security advisories

8 advisories · none critical or high in 12 months · latest Feb 10, 2023

8 advisories

DateAdvisory
Feb 102023IPython vulnerable to command injection via set_term_title
CVE-2023-24816Low4.5fixed in 8.10.0
May 172022Improper Input Validation in Jupyter Notebook
CVE-2015-7337Critical9.8fixed in 4.0.5
May 172022Improper Neutralization of Input During Web Page Generation in IPython
CVE-2015-4706Medium6.1fixed in 3.2.0
May 172022IPython vulnerable to cross site request forgery (CSRF)
CVE-2015-5607High8.8fixed in 2.4.1, 3.2.3
May 142022IPython Notebook vulnerable to improper validation of the origin of websocket requests
CVE-2014-3429High9.8fixed in 1.2.0
May 142022Improper Neutralization of Input During Web Page Generation in Jupyter Notebook
CVE-2015-6938Medium6.1fixed in 4.0.5
May 132022Improper Neutralization of Input During Web Page Generation in IPython
CVE-2015-4707Medium6.1fixed in 3.2.0
Jan 212022Execution with Unnecessary Privileges in ipython
CVE-2022-21699High8.2fixed in 5.11, 7.16.3, 7.31.1, 8.0.1
About IPython

The interactive Python shell and kernel.

Packages watched: ipython (PyPI).

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.