Junglewise Threat Intelligence

CVE-2021-32797: PYSEC-2026-688 - JupyterLab: XSS due to lack of sanitization of the action attribute of an html <form>

CVE-2021-32797 · Severity: low · CVSS 3.1 · Published 2026-07-02

Technologies: notebook (PyPI), jupyterlab (PyPI). Vendors: PyPI.

Executive brief

JupyterLab: XSS due to lack of sanitization of the action attribute of an html <form>

Affected products

  • PyPI notebook
  • PyPI jupyterlab

Related threats