jupyter-scheduler
Run Jupyter notebooks as jobs
Activity
- Latest release
- 1mo ago
- Total releases
- 53
- Cadence
- ~5 days
- Last 12 months
- 2
Reach
- Stars
- 221
Details
- License
- custom
- First release
- Sep 15, 2022
| Version | Released | |
|---|---|---|
2.12.1
patch
| ||
2.12.0
minor
| ||
2.11.0
minor
| ||
2.10.0
minor
| ||
2.9.0
minor
| ||
2.8.0
minor
| ||
2.7.1
patch
| ||
2.7.0
minor
| ||
2.6.0
minor
| ||
1.9.0
minor
| ||
1.2.1
patch
| ||
2.5.2
patch
| ||
1.8.2
patch
| ||
1.1.6
patch
| ||
1.1.5
patch
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
2.5.1
patch
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.8.1
patch
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
2.5.0
minor
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.8.0
minor
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
2.4.0
minor
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.7.0
minor
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
2.3.0
minor
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.6.0
minor
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
2.2.0
minor
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.5.0
minor
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
2.1.0
minor
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.4.0
minor
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
2.0.0
major
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.3.4
patch
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.3.3
patch
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.3.2
patch
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.3.1
patch
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.3.0
minor
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.2.0
minor
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.1.4
patch
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.1.3
patch
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.1.2
patch
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.1.1
patch
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.1.0
minor
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.0.0
major
1 CVE
CVE-2024-28188
PYSEC-2026-1479
GHSA-v9g2-g7j4-4jxc
Jul 07, 2026
jupyter-scheduler's endpoint is missing authentication
5.3
/ 10
Medium
Network
Low
None
None
Unchanged
Low
None
None
Impact
This issue does not allow an unauthenticated third party to read, modify, or enter the Conda environments present on the server where Impacted versions: Patches
WorkaroundsServer operators who are unable to upgrade can disable the
ReferencesIf you have any questions or comments about this advisory we ask that you contact AWS/Amazon Security via our vulnerability reporting page [1] or directly via email to aws-security@amazon.com. Please do not create a public GitHub issue. [1] Vulnerability reporting page: https://aws.amazon.com/security/vulnerability-reporting Affected versions
1.0.0
1.1.0
1.1.1
1.1.2
1.1.3
1.1.4
1.1.5
1.2.0
1.3.0
1.3.1
1.3.2
1.3.3
+ 14 more Show less
1.3.4
1.4.0
1.5.0
1.6.0
1.7.0
1.8.0
1.8.1
2.0.0
2.1.0
2.2.0
2.3.0
2.4.0
2.5.0
2.5.1
Fixed in
1.1.6
1.2.1
1.8.2
2.5.2
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
0.6.1
patch
| ||
0.6.0
minor
| ||
0.5.1
patch
| ||
0.5.0
minor
| ||
0.4.2
patch
| ||
0.4.1
patch
| ||
0.4.0
minor
| ||
0.3.2
patch
| ||
0.3.1
patch
| ||
0.3.0
minor
|