Executive brief
JupyterLab: XSS due to lack of sanitization of the action attribute of an html <form>
Affected products
- PyPI notebook
- PyPI jupyterlab
Junglewise Threat Intelligence
CVE-2021-32797 · Severity: low · CVSS 3.1 · Published 2026-07-02
Technologies: notebook (PyPI), jupyterlab (PyPI). Vendors: PyPI.
JupyterLab: XSS due to lack of sanitization of the action attribute of an html <form>