Lack of user input validation in the file upload functionality of Open Notebook v1.8.3 allows the application user to access local files content from the docker container via path traversal.
References
| Link | Resource |
|---|---|
| https://github.com/lfnovo/open-notebook/security/advisories/GHSA-842v-h4cj-r646 | Mitigation Vendor Advisory |
Configurations
History
No history.
Information
Published : 2026-05-07 11:16
Updated : 2026-06-17 10:37
NVD link : CVE-2026-33589
Mitre link : CVE-2026-33589
CVE.ORG link : CVE-2026-33589
JSON object : View
Products Affected
lfnovo
- open-notebook
CWE
