Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-c3mw-737p-c7g2 | Jupyter Server: 5xx request logging leaks token-bearing Referer header values |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Fri, 18 Sep 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Jupyter
Jupyter jupyter Server |
|
| Vendors & Products |
Jupyter
Jupyter jupyter Server |
|
| Metrics |
ssvc
|
Thu, 17 Sep 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Jupyter Server is the backend for Jupyter web applications. Prior to version 2.21.0, the 5xx request logging path in jupyter_server/log.py copies the Referer header into a JSON header block without applying the token scrubbing used for the request URI. A request that returns HTTP 500 while the Referer contains a token-bearing URL can therefore write that token to server logs in plaintext. An attacker who can read those logs can recover the token and use the affected user's Jupyter Server permissions. This issue is fixed in version 2.21.0. | |
| Title | Jupyter Server: 5xx request logging leaks token-bearing Referer header values | |
| Weaknesses | CWE-532 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-09-18T18:32:48.654Z
Reserved: 2026-09-04T19:29:21.058Z
Link: CVE-2026-86049
Updated: 2026-09-18T17:24:13.674Z
Status : Received
Published: 2026-09-17T21:17:50.213
Modified: 2026-09-18T19:17:08.143
Link: CVE-2026-86049
No data.
OpenCVE Enrichment
Updated: 2026-09-19T02:45:16Z
Github GHSA