MEDIUM6.5PyPI
GHSA-4c99-qj7h-p3vg· CVE-2026-39377, PYSEC-2026-2229nbconvert has an Arbitrary File Write via Path Traversal in Cell Attachment Filenames
Modified: 9/10/2026
package
pkg:pypi/nbconvert
nbconvert has an Arbitrary File Write via Path Traversal in Cell Attachment Filenames
Modified: 9/10/2026
nbconvert has an Arbitrary File Read via Path Traversal in HTMLExporter Image Embedding
Modified: 9/10/2026
nbconvert vulnerable to cross-site scripting (XSS) via multiple exploit paths
Modified: 9/10/2026
nbconvert has an uncontrolled search path that leads to unauthorized code execution on Windows
Modified: 9/10/2026
Modified: 11/8/2023
nbconvert has an uncontrolled search path that leads to unauthorized code execution on Windows
Modified: 7/7/2026
Modified: 7/13/2026
Modified: 7/13/2026