Executive brief
JupyterLab: Image viewer allows XSS when opening malicious image in new browser tab
Affected products
- PyPI jupyterlab
Junglewise Threat Intelligence
CVE-2026-73415 · Severity: medium · CVSS 4 · Published 2026-08-19
Technologies: jupyterlab (PyPI). Vendors: PyPI.
JupyterLab: Image viewer allows XSS when opening malicious image in new browser tab