OSS Support Hub / Developer Tools

Python Developer Tools BSD-3-Clause Latest: v4.6.0a5

JupyterLab

Web-based interactive development environment for Jupyter notebooks, code, and data

Project Health at a Glance

Live data from GitHub and PyPI, updated daily.

โญ
15.1K
GitHub Stars
๐Ÿ“ฆ
v4.6.0a5
Latest Release ยท 16 days ago
๐Ÿ”„
12d
Avg. Release Cadence
๐Ÿ›
2.6K
Open Issues
๐Ÿ“…
Yesterday
Last Commit
๐Ÿ”’
9
Active CVEs

Data last fetched: 2026-05-15

Known Vulnerabilities

9 active CVEs reported via OSV.dev

JupyterHub has an Extension Manager API/GUI Policy Discrepancy, allowing 3rd party (malicious) extensions install via POST request

Published: 2026-05-05 Fixed in: 4.5.7

JupyterLab vulnerable to potential authentication and CSRF tokens leak

Published: 2024-01-19 Fixed in: 4.0.11

JupyterLab: XSS due to lack of sanitization of the action attribute of an html <form>

Published: 2021-08-23 Fixed in: 1.2.21

JupyterLab vulnerable to SXSS in Markdown Preview

Published: 2024-01-19 Fixed in: 4.0.11

HTML injection in Jupyter Notebook and JupyterLab leading to DOM Clobbering

Published: 2024-08-29 Fixed in: 3.6.8

JupyterLab's command linker attributes in HTML enable one-click command execution from untrusted content

Published: 2026-05-06 Fixed in: 4.5.7

Jupyter Notebook Vulnerable to Authentication Token Theft via CommandLinker XSS

Published: 2026-04-30 Fixed in: 7.5.6

JupyterLab LaTeX typesetter links did not enforce `noopener` attribute

Published: 2025-09-26 Fixed in: 4.4.8
PYSEC-2021-130 Unknown

Published: 2021-08-09 Fixed in: 504825938c0abfa2fb8ff8d529308830a5ae42ed

Alternatives to JupyterLab

Other Developer Tools projects in the Python ecosystem worth evaluating.

Support Options for JupyterLab

Enterprise Support via DepKeep

Get SLA-backed support, security patches, and direct access to senior engineers for JupyterLab โ€” without relying on volunteer maintainers.

Talk to an Expert โ†’