Lack of user input validation in the file upload functionality of Open Notebook v1.8.3 allows the application user to create or modify files on the docker container via path traversal.
References
| Link | Resource |
|---|---|
| https://github.com/lfnovo/open-notebook/security/advisories/GHSA-x4q2-89g5-594v | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2026-05-07 11:16
Updated : 2026-06-17 10:37
NVD link : CVE-2026-33588
Mitre link : CVE-2026-33588
CVE.ORG link : CVE-2026-33588
JSON object : View
Products Affected
lfnovo
- open-notebook
CWE
