This image poses a critical security risk and must not be used in production, especially as an internet-facing service. An attacker could exploit CVE-2026-42557 to execute arbitrary code on the Jupyter server with a single click from a malicious notebook output, and CVE-2024-22415 to gain unauthorized access to the host file system beyond the Jupyter root directory. Note that CVE-2024-22415 only applies if the environment lacks OS-level file system access controls and the server is exposed to non-trusted networks; uninstalling jupyter-lsp would fully mitigate it. However, the other critical vulnerabilities (e.g., CVE-2026-42557) require no special configuration and cannot be easily mitigated. The image contains 263 total vulnerabilities, with 28 of high severity, and the overall threat score is 100, confirming this image is unsuitable for production.
| CVE ID | Adjusted Severity | Package | Exploit Probability | Risk Context |
|---|---|---|---|---|
| CVE-2024-22415 | HIGH8.33 | jupyter-lsp 2.2.0 fixed in 2.2.2 | 0.5% Theoretical Threat | Directly ExposedContext importance: HIGH |
| CVE-2026-42557 | HIGH8.16 | jupyterlab 4.0.7 fixed in 4.5.7 | 0.3% Theoretical Threat | Directly ExposedContext importance: HIGH |
| CVE-2026-42557 | HIGH8.16 | notebook 7.0.6 fixed in 7.5.6 | 0.3% Theoretical Threat | Directly ExposedContext importance: HIGH |
| CVE-2026-45447 | HIGH8.1 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.25 | 1.4% Low-Moderate Risk | Directly Exposed |
| CVE-2026-33845 | HIGH7.73 | libgnutls30 3.7.3-4ubuntu1.2 fixed in 3.7.3-4ubuntu1.9 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2026-45445 | HIGH7.73 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.25 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2024-33599 | HIGH7.6 | libc-bin 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.8 | 1.3% Low-Moderate Risk | Directly Exposed |
| CVE-2024-33599 | HIGH7.6 | libc6 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.8 | 1.3% Low-Moderate Risk | Directly Exposed |
| CVE-2023-5156 | HIGH7.5 | libc-bin 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.5 | 1.3% Low-Moderate Risk | Directly Exposed |
| CVE-2023-5156 | HIGH7.5 | libc6 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.5 | 1.3% Low-Moderate Risk | Directly Exposed |
| CVE-2023-22486 | HIGH7.5 | libcmark-gfm-extensions0.29.0.gfm.3 0.29.0.gfm.3-3 No fix yet | 1.1% Low-Moderate Risk | Directly Exposed |
| CVE-2023-26485 | HIGH7.5 | libcmark-gfm-extensions0.29.0.gfm.3 0.29.0.gfm.3-3 No fix yet | 1.0% Low-Moderate Risk | Directly Exposed |
| CVE-2023-22486 | HIGH7.5 | libcmark-gfm0.29.0.gfm.3 0.29.0.gfm.3-3 No fix yet | 1.1% Low-Moderate Risk | Directly Exposed |
| CVE-2023-26485 | HIGH7.5 | libcmark-gfm0.29.0.gfm.3 0.29.0.gfm.3-3 No fix yet | 1.0% Low-Moderate Risk | Directly Exposed |
| CVE-2024-0553 | HIGH7.5 | libgnutls30 3.7.3-4ubuntu1.2 fixed in 3.7.3-4ubuntu1.4 | 1.6% Low-Moderate Risk | Directly Exposed |
| CVE-2024-0567 | HIGH7.5 | libgnutls30 3.7.3-4ubuntu1.2 fixed in 3.7.3-4ubuntu1.4 | 1.4% Low-Moderate Risk | Directly Exposed |
| CVE-2017-11164 | HIGH7.5 | libpcre3 2:8.39-13ubuntu0.22.04.1 No fix yet | 3.1% Low-Moderate Risk | Directly Exposed |
| CVE-2022-40735 | HIGH7.5 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.16 | 2.3% Low-Moderate Risk | Directly Exposed |
| CVE-2023-5363 | HIGH7.5 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.12 | 3.3% Low-Moderate Risk | Directly Exposed |
| CVE-2022-4899 | HIGH7.5 | libzstd1 1.4.8+dfsg-3build1 No fix yet | 1.6% Low-Moderate Risk | Directly Exposed |
| CVE-2025-64756 | HIGH7.5 | glob 10.3.3 fixed in 11.1.0, 10.5.0 | 3.0% Low-Moderate Risk | Directly Exposed |
| CVE-2024-39689 | HIGH7.5 | certifi 2023.7.22 fixed in 2024.7.4 | 1.0% Low-Moderate Risk | Directly Exposed |
| CVE-2023-50782 | HIGH7.5 | cryptography 41.0.4 fixed in 42.0.0 | 1.1% Low-Moderate Risk | Directly Exposed |
| CVE-2024-3651 | HIGH7.5 | idna 3.4 fixed in 3.7 | 1.1% Low-Moderate Risk | Directly Exposed |
| CVE-2024-52804 | HIGH7.5 | tornado 6.3.3 fixed in 6.4.2 | 1.0% Low-Moderate Risk | Directly Exposed |
| CVE-2024-56201 | HIGH7.48 | Jinja2 3.1.2 fixed in 3.1.5 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2025-27516 | HIGH7.48 | Jinja2 3.1.2 fixed in 3.1.6 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2026-35397 | HIGH7.48 | jupyter_server 2.8.0 fixed in 2.18.0 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2025-32990 | MEDIUM6.97 | libgnutls30 3.7.3-4ubuntu1.2 fixed in 3.7.3-4ubuntu1.7 | 0.7% Theoretical Threat | Directly Exposed |
| CVE-2026-42013 | MEDIUM6.97 | libgnutls30 3.7.3-4ubuntu1.2 fixed in 3.7.3-4ubuntu1.9 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-5260 | MEDIUM6.97 | libgnutls30 3.7.3-4ubuntu1.2 fixed in 3.7.3-4ubuntu1.9 | 0.7% Theoretical Threat | Directly Exposed |
| CVE-2026-0861 | MEDIUM6.88 | libc-bin 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.13 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-0861 | MEDIUM6.88 | libc6 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.13 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-28387 | MEDIUM6.88 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.23 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2026-29111 | MEDIUM6.63 | libsystemd0 249.11-0ubuntu3.10 fixed in 249.11-0ubuntu3.19 | 0.1% Theoretical Threat | Directly Exposed |
| CVE-2026-29111 | MEDIUM6.63 | libudev1 249.11-0ubuntu3.10 fixed in 249.11-0ubuntu3.19 | 0.1% Theoretical Threat | Directly Exposed |
| CVE-2025-53000 | MEDIUM6.63 | nbconvert 7.9.2 fixed in 7.17.0 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2022-39209 | MEDIUM6.5 | libcmark-gfm-extensions0.29.0.gfm.3 0.29.0.gfm.3-3 No fix yet | 1.6% Low-Moderate Risk | Directly Exposed |
| CVE-2022-39209 | MEDIUM6.5 | libcmark-gfm0.29.0.gfm.3 0.29.0.gfm.3-3 No fix yet | 1.6% Low-Moderate Risk | Directly Exposed |
| CVE-2023-36054 | MEDIUM6.5 | libgssapi-krb5-2 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.3 | 2.1% Low-Moderate Risk | Directly Exposed |
| CVE-2023-36054 | MEDIUM6.5 | libk5crypto3 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.3 | 2.1% Low-Moderate Risk | Directly Exposed |
| CVE-2023-36054 | MEDIUM6.5 | libkrb5-3 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.3 | 2.1% Low-Moderate Risk | Directly Exposed |
| CVE-2023-36054 | MEDIUM6.5 | libkrb5support0 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.3 | 2.1% Low-Moderate Risk | Directly Exposed |
| CVE-2023-6129 | MEDIUM6.5 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.14 | 2.3% Low-Moderate Risk | Directly Exposed |
| CVE-2024-28849 | MEDIUM6.5 | follow-redirects 1.15.2 fixed in 1.15.6 | 1.0% Low-Moderate Risk | Directly Exposed |
| CVE-2023-22483 | MEDIUM6.38 | libcmark-gfm-extensions0.29.0.gfm.3 0.29.0.gfm.3-3 No fix yet | 0.9% Theoretical Threat | Directly Exposed |
| CVE-2023-22483 | MEDIUM6.38 | libcmark-gfm0.29.0.gfm.3 0.29.0.gfm.3-3 No fix yet | 0.9% Theoretical Threat | Directly Exposed |
| CVE-2026-41989 | MEDIUM6.38 | libgcrypt20 1.9.4-3ubuntu3 fixed in 1.9.4-3ubuntu3.2 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2026-33846 | MEDIUM6.38 | libgnutls30 3.7.3-4ubuntu1.2 fixed in 3.7.3-4ubuntu1.9 | 0.9% Theoretical Threat | Directly Exposed |
| CVE-2026-42009 | MEDIUM6.38 | libgnutls30 3.7.3-4ubuntu1.2 fixed in 3.7.3-4ubuntu1.9 | 0.8% Theoretical Threat | Directly Exposed |
| CVE-2024-37370 | MEDIUM6.38 | libgssapi-krb5-2 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.4 | 0.7% Theoretical Threat | Directly Exposed |
| CVE-2024-37370 | MEDIUM6.38 | libk5crypto3 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.4 | 0.7% Theoretical Threat | Directly Exposed |
| CVE-2024-37370 | MEDIUM6.38 | libkrb5-3 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.4 | 0.7% Theoretical Threat | Directly Exposed |
| CVE-2024-37370 | MEDIUM6.38 | libkrb5support0 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.4 | 0.7% Theoretical Threat | Directly Exposed |
| CVE-2022-41409 | MEDIUM6.38 | libpcre2-8-0 10.39-3ubuntu0.1 No fix yet | 1.0% Theoretical Threat | Directly Exposed |
| CVE-2025-69421 | MEDIUM6.38 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.21 | 0.8% Theoretical Threat | Directly Exposed |
| CVE-2026-28388 | MEDIUM6.38 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.23 | 0.9% Theoretical Threat | Directly Exposed |
| CVE-2026-28389 | MEDIUM6.38 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.23 | 0.8% Theoretical Threat | Directly Exposed |
| CVE-2026-28390 | MEDIUM6.38 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.23 | 0.8% Theoretical Threat | Directly Exposed |
| CVE-2026-33750 | MEDIUM6.38 | brace-expansion 1.1.11 fixed in 5.0.5, 3.0.2, 2.0.3, 1.1.13 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-33750 | MEDIUM6.38 | brace-expansion 2.0.1 fixed in 5.0.5, 3.0.2, 2.0.3, 1.1.13 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-24001 | MEDIUM6.38 | diff 5.1.0 fixed in 8.0.3, 5.2.2, 4.0.4, 3.5.1 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2026-26996 | MEDIUM6.38 | minimatch 3.1.2 fixed in 10.2.1, 9.0.6, 8.0.5, 7.4.7, 6.2.1, 5.1.7, 4.2.4, 3.1.3 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2026-26996 | MEDIUM6.38 | minimatch 9.0.3 fixed in 10.2.1, 9.0.6, 8.0.5, 7.4.7, 6.2.1, 5.1.7, 4.2.4, 3.1.3 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2025-6176 | MEDIUM6.38 | Brotli 1.1.0 fixed in 1.2.0 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2026-41205 | MEDIUM6.38 | Mako 1.2.4 fixed in 1.3.11 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-32597 | MEDIUM6.38 | PyJWT 2.8.0 fixed in 2.12.0 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2024-26130 | MEDIUM6.38 | cryptography 41.0.4 fixed in 42.0.4 | 0.8% Theoretical Threat | Directly Exposed |
| CVE-2023-49083 | MEDIUM6.38 | cryptography 41.0.4 fixed in 41.0.6 | 1.0% Theoretical Threat | Directly Exposed |
| CVE-2024-35178 | MEDIUM6.38 | jupyter_server 2.8.0 fixed in 2.14.1 | 0.7% Theoretical Threat | Directly Exposed |
| CVE-2026-33079 | MEDIUM6.38 | mistune 3.0.1 fixed in 3.2.1 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2025-47287 | MEDIUM6.38 | tornado 6.3.3 fixed in 6.5 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2026-31958 | MEDIUM6.38 | tornado 6.3.3 fixed in 6.5.5 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2025-66418 | MEDIUM6.38 | urllib3 2.0.7 fixed in 2.6.0 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2025-66471 | MEDIUM6.38 | urllib3 2.0.7 fixed in 2.6.0 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2026-21441 | MEDIUM6.38 | urllib3 2.0.7 fixed in 2.6.3 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2026-3833 | MEDIUM6.29 | libgnutls30 3.7.3-4ubuntu1.2 fixed in 3.7.3-4ubuntu1.9 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2026-42011 | MEDIUM6.29 | libgnutls30 3.7.3-4ubuntu1.2 fixed in 3.7.3-4ubuntu1.9 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2026-34182 | MEDIUM6.29 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.25 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2025-69419 | MEDIUM6.29 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.21 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-48526 | MEDIUM6.29 | PyJWT 2.8.0 fixed in 2.13.0 | 0.1% Theoretical Threat | Directly Exposed |
| CVE-2026-40110 | MEDIUM6.21 | jupyter_server 2.8.0 fixed in 2.18.0 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2024-34062 | MEDIUM6.21 | tqdm 4.66.1 fixed in 4.66.3 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2024-41942 | MEDIUM6.12 | jupyterhub 4.0.2 fixed in 4.1.6, 5.1.0 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2026-42012 | MEDIUM6.03 | libgnutls30 3.7.3-4ubuntu1.2 fixed in 3.7.3-4ubuntu1.9 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2025-4802 | MEDIUM5.95 | libc-bin 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.10 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2025-4802 | MEDIUM5.95 | libc6 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.10 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-4878 | MEDIUM5.95 | libcap2 1:2.44-1ubuntu0.22.04.1 fixed in 1:2.44-1ubuntu0.22.04.3 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2023-4806 | MEDIUM5.9 | libc-bin 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.5 | 1.4% Low-Moderate Risk | Directly Exposed |
| CVE-2023-4813 | MEDIUM5.9 | libc-bin 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.5 | 1.7% Low-Moderate Risk | Directly Exposed |
| CVE-2023-4806 | MEDIUM5.9 | libc6 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.5 | 1.4% Low-Moderate Risk | Directly Exposed |
| CVE-2023-4813 | MEDIUM5.9 | libc6 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.5 | 1.7% Low-Moderate Risk | Directly Exposed |
| CVE-2024-2236 | MEDIUM5.9 | libgcrypt20 1.9.4-3ubuntu3 No fix yet | 1.1% Low-Moderate Risk | Directly Exposed |
| CVE-2023-5981 | MEDIUM5.9 | libgnutls30 3.7.3-4ubuntu1.2 fixed in 3.7.3-4ubuntu1.3 | 1.3% Low-Moderate Risk | Directly Exposed |
| CVE-2024-26461 | MEDIUM5.9 | libgssapi-krb5-2 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.6 | 1.1% Low-Moderate Risk | Directly Exposed |
| CVE-2024-26461 | MEDIUM5.9 | libk5crypto3 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.6 | 1.1% Low-Moderate Risk | Directly Exposed |
| CVE-2024-26461 | MEDIUM5.9 | libkrb5-3 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.6 | 1.1% Low-Moderate Risk | Directly Exposed |
| CVE-2024-26461 | MEDIUM5.9 | libkrb5support0 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.6 | 1.1% Low-Moderate Risk | Directly Exposed |
| CVE-2023-6237 | MEDIUM5.9 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.14 | 2.3% Low-Moderate Risk | Directly Exposed |
| CVE-2024-5535 | MEDIUM5.9 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.17 | 5.6% Low-Moderate Risk | Directly Exposed |
| CVE-2025-13151 | MEDIUM5.9 | libtasn1-6 4.18.0-4build1 fixed in 4.18.0-4ubuntu0.2 | 1.1% Low-Moderate Risk | Directly Exposed |
| CVE-2026-40934 | MEDIUM5.78 | jupyter_server 2.8.0 fixed in 2.18.0 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2026-42014 | MEDIUM5.61 | libgnutls30 3.7.3-4ubuntu1.2 fixed in 3.7.3-4ubuntu1.9 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2025-9230 | MEDIUM5.6 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.20 | 1.8% Low-Moderate Risk | Directly Exposed |
| CVE-2024-4741 | MEDIUM5.6 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.17 | 2.9% Low-Moderate Risk | Directly Exposed |
| CVE-2026-6238 | MEDIUM5.52 | libc-bin 2.35-0ubuntu3.4 No fix yet | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2026-6238 | MEDIUM5.52 | libc6 2.35-0ubuntu3.4 No fix yet | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2025-6395 | MEDIUM5.52 | libgnutls30 3.7.3-4ubuntu1.2 fixed in 3.7.3-4ubuntu1.7 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2025-24528 | MEDIUM5.52 | libgssapi-krb5-2 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.6 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2025-24528 | MEDIUM5.52 | libk5crypto3 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.6 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2025-24528 | MEDIUM5.52 | libkrb5-3 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.6 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2025-24528 | MEDIUM5.52 | libkrb5support0 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.6 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2026-27904 | MEDIUM5.52 | minimatch 3.1.2 fixed in 10.2.3, 9.0.7, 8.0.6, 7.4.8, 6.2.2, 5.1.8, 4.2.5, 3.1.4 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2026-27904 | MEDIUM5.52 | minimatch 9.0.3 fixed in 10.2.3, 9.0.7, 8.0.6, 7.4.8, 6.2.2, 5.1.8, 4.2.5, 3.1.4 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2026-26007 | MEDIUM5.52 | cryptography 41.0.4 fixed in 46.0.5 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2024-22421 | MEDIUM5.52 | jupyterlab 4.0.7 fixed in 4.0.11, 3.6.7 | 0.7% Theoretical Threat | Directly Exposed |
| CVE-2026-39377 | MEDIUM5.52 | nbconvert 7.9.2 fixed in 7.17.1 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2024-22421 | MEDIUM5.52 | notebook 7.0.6 fixed in 7.0.7 | 0.7% Theoretical Threat | Directly Exposed |
| CVE-2024-37891 | MEDIUM5.52 | urllib3 2.0.7 fixed in 1.26.19, 2.2.2 | 1.0% Theoretical Threat | Directly Exposed |
| CVE-2024-0727 | MEDIUM5.5 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.14 | 3.2% Low-Moderate Risk | Directly Exposed |
| CVE-2024-0727 | MEDIUM5.5 | cryptography 41.0.4 fixed in 42.0.2 | 3.2% Low-Moderate Risk | Directly Exposed |
| CVE-2026-40225 | MEDIUM5.44 | libsystemd0 249.11-0ubuntu3.10 fixed in 249.11-0ubuntu3.19 | 0.1% Theoretical Threat | Directly Exposed |
| CVE-2026-40226 | MEDIUM5.44 | libsystemd0 249.11-0ubuntu3.10 fixed in 249.11-0ubuntu3.21 | <0.1% Theoretical Threat | Directly Exposed |
| CVE-2026-40225 | MEDIUM5.44 | libudev1 249.11-0ubuntu3.10 fixed in 249.11-0ubuntu3.19 | 0.1% Theoretical Threat | Directly Exposed |
| CVE-2026-40226 | MEDIUM5.44 | libudev1 249.11-0ubuntu3.10 fixed in 249.11-0ubuntu3.21 | <0.1% Theoretical Threat | Directly Exposed |
| CVE-2024-6485 | MEDIUM5.44 | bootstrap 3.4.1 No fix yet | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2024-56326 | MEDIUM5.35 | Jinja2 3.1.2 fixed in 3.1.5 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2024-33600 | MEDIUM5.3 | libc-bin 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.8 | 1.2% Low-Moderate Risk | Directly Exposed |
| CVE-2024-33600 | MEDIUM5.3 | libc6 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.8 | 1.2% Low-Moderate Risk | Directly Exposed |
| CVE-2024-12243 | MEDIUM5.3 | libgnutls30 3.7.3-4ubuntu1.2 fixed in 3.7.3-4ubuntu1.6 | 1.2% Low-Moderate Risk | Directly Exposed |
| CVE-2025-32989 | MEDIUM5.3 | libgnutls30 3.7.3-4ubuntu1.2 fixed in 3.7.3-4ubuntu1.7 | 1.2% Low-Moderate Risk | Directly Exposed |
| CVE-2023-3446 | MEDIUM5.3 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.12 | 5.5% Low-Moderate Risk | Directly Exposed |
| CVE-2023-3817 | MEDIUM5.3 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.12 | 2.6% Low-Moderate Risk | Directly Exposed |
| CVE-2023-5678 | MEDIUM5.3 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.14 | 4.5% Low-Moderate Risk | Directly Exposed |
| CVE-2024-4603 | MEDIUM5.3 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.17 | 1.1% Low-Moderate Risk | Directly Exposed |
| CVE-2024-12133 | MEDIUM5.3 | libtasn1-6 4.18.0-4build1 fixed in 4.18.0-4ubuntu0.1 | 1.0% Low-Moderate Risk | Directly Exposed |
| CVE-2025-32462 | MEDIUM5.28 | sudo 1.9.9-1ubuntu2.4 fixed in 1.9.9-1ubuntu2.5 | 3.2% Low-Moderate Risk | Post-Exploit |
| CVE-2024-5569 | MEDIUM5.27 | zipp 3.17.0 fixed in 3.19.1 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2025-1390 | MEDIUM5.18 | libcap2 1:2.44-1ubuntu0.22.04.1 fixed in 1:2.44-1ubuntu0.22.04.2 | 0.1% Theoretical Threat | Directly Exposed |
| CVE-2023-26159 | MEDIUM5.18 | follow-redirects 1.15.2 fixed in 1.15.4 | 0.8% Theoretical Threat | Directly Exposed |
| CVE-2024-22195 | MEDIUM5.18 | Jinja2 3.1.2 fixed in 3.1.3 | 0.9% Theoretical Threat | Directly Exposed |
| CVE-2025-61669 | MEDIUM5.18 | jupyter_server 2.8.0 fixed in 2.18.0 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2024-28233 | MEDIUM5.18 | jupyterhub 4.0.2 fixed in 4.1.0 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2026-33709 | MEDIUM5.18 | jupyterhub 4.0.2 fixed in 5.4.4 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2024-43805 | MEDIUM5.18 | jupyterlab 4.0.7 fixed in 3.6.8, 4.2.5 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2024-22420 | MEDIUM5.18 | jupyterlab 4.0.7 fixed in 4.0.11 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2026-44708 | MEDIUM5.18 | mistune 3.0.1 No fix yet | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2026-44896 | MEDIUM5.18 | mistune 3.0.1 fixed in 3.2.1 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2026-44897 | MEDIUM5.18 | mistune 3.0.1 fixed in 3.2.1 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2024-43805 | MEDIUM5.18 | notebook 7.0.6 fixed in 7.2.2 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2024-22420 | MEDIUM5.18 | notebook 7.0.6 fixed in 7.0.7 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2025-50181 | MEDIUM5.18 | urllib3 2.0.7 fixed in 2.5.0 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2025-15281 | MEDIUM5.02 | libc-bin 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.13 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2026-5435 | MEDIUM5.02 | libc-bin 2.35-0ubuntu3.4 No fix yet | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2025-15281 | MEDIUM5.02 | libc6 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.13 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2026-5435 | MEDIUM5.02 | libc6 2.35-0ubuntu3.4 No fix yet | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2025-3576 | MEDIUM5.02 | libgssapi-krb5-2 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.7 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2024-26458 | MEDIUM5.02 | libgssapi-krb5-2 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.6 | 0.8% Theoretical Threat | Directly Exposed |
| CVE-2025-3576 | MEDIUM5.02 | libk5crypto3 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.7 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2024-26458 | MEDIUM5.02 | libk5crypto3 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.6 | 0.8% Theoretical Threat | Directly Exposed |
| CVE-2025-3576 | MEDIUM5.02 | libkrb5-3 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.7 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2024-26458 | MEDIUM5.02 | libkrb5-3 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.6 | 0.8% Theoretical Threat | Directly Exposed |
| CVE-2025-3576 | MEDIUM5.02 | libkrb5support0 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.7 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2024-26458 | MEDIUM5.02 | libkrb5support0 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.6 | 0.8% Theoretical Threat | Directly Exposed |
| CVE-2026-31790 | MEDIUM5.02 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.23 | 1.0% Theoretical Threat | Directly Exposed |
| CVE-2025-69420 | MEDIUM5.02 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.21 | 0.8% Theoretical Threat | Directly Exposed |
| CVE-2026-22796 | MEDIUM5.02 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.21 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2026-42770 | MEDIUM5.02 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.25 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2026-9076 | MEDIUM5.02 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.25 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2023-7008 | MEDIUM5.02 | libsystemd0 249.11-0ubuntu3.10 fixed in 249.11-0ubuntu3.21 | 0.8% Theoretical Threat | Directly Exposed |
| CVE-2023-7008 | MEDIUM5.02 | libudev1 249.11-0ubuntu3.10 fixed in 249.11-0ubuntu3.21 | 0.8% Theoretical Threat | Directly Exposed |
| CVE-2026-27903 | MEDIUM5.02 | minimatch 3.1.2 fixed in 10.2.3, 9.0.7, 8.0.6, 7.4.8, 6.2.2, 5.1.8, 4.2.5, 3.1.3 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2026-27903 | MEDIUM5.02 | minimatch 9.0.3 fixed in 10.2.3, 9.0.7, 8.0.6, 7.4.8, 6.2.2, 5.1.8, 4.2.5, 3.1.3 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2026-44307 | MEDIUM5.02 | Mako 1.2.4 fixed in 1.3.12 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2026-48524 | MEDIUM5.02 | PyJWT 2.8.0 fixed in 2.13.0 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2026-39378 | MEDIUM4.84 | nbconvert 7.9.2 fixed in 7.17.1 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2024-2511 | MEDIUM4.81 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.17 | 54.0% Actively Exploited | Directly Exposed |
| CVE-2025-1647 | MEDIUM4.76 | bootstrap 3.4.1 No fix yet | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2024-35195 | MEDIUM4.76 | requests 2.31.0 fixed in 2.32.0 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2022-27943 | MEDIUM4.67 | gcc-12-base 12.3.0-1ubuntu1~22.04 No fix yet | 0.9% Theoretical Threat | Directly Exposed |
| CVE-2025-0395 | MEDIUM4.67 | libc-bin 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.9 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2025-0395 | MEDIUM4.67 | libc6 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.9 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2022-27943 | MEDIUM4.67 | libgcc-s1 12.3.0-1ubuntu1~22.04 No fix yet | 0.9% Theoretical Threat | Directly Exposed |
| CVE-2026-22795 | MEDIUM4.67 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.21 | 0.1% Theoretical Threat | Directly Exposed |
| CVE-2026-7383 | MEDIUM4.67 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.25 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2022-27943 | MEDIUM4.67 | libstdc++6 12.3.0-1ubuntu1~22.04 No fix yet | 0.9% Theoretical Threat | Directly Exposed |
| CVE-2026-25645 | MEDIUM4.67 | requests 2.31.0 fixed in 2.33.0 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2026-45445 | MEDIUM4.64 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.25 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2024-38428 | MEDIUM4.64 | wget 1.21.2-2ubuntu1 fixed in 1.21.2-2ubuntu1.1 | 0.7% Theoretical Threat | Post-Exploit |
| CVE-2024-34064 | MEDIUM4.59 | Jinja2 3.1.2 fixed in 3.1.4 | 1.0% Theoretical Threat | Directly Exposed |
| CVE-2022-40735 | MEDIUM4.5 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.16 | 2.3% Low-Moderate Risk | Post-Exploit |
| CVE-2023-5363 | MEDIUM4.5 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.12 | 3.3% Low-Moderate Risk | Post-Exploit |
| CVE-2026-0915 | MEDIUM4.5 | libc-bin 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.13 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2026-4046 | MEDIUM4.5 | libc-bin 2.35-0ubuntu3.4 No fix yet | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-0915 | MEDIUM4.5 | libc6 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.13 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2026-4046 | MEDIUM4.5 | libc6 2.35-0ubuntu3.4 No fix yet | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2024-28834 | MEDIUM4.5 | libgnutls30 3.7.3-4ubuntu1.2 fixed in 3.7.3-4ubuntu1.5 | 0.7% Theoretical Threat | Directly Exposed |
| CVE-2025-14831 | MEDIUM4.5 | libgnutls30 3.7.3-4ubuntu1.2 fixed in 3.7.3-4ubuntu1.8 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2026-42015 | MEDIUM4.5 | libgnutls30 3.7.3-4ubuntu1.2 fixed in 3.7.3-4ubuntu1.9 | 0.7% Theoretical Threat | Directly Exposed |
| CVE-2026-34743 | MEDIUM4.5 | liblzma5 5.2.5-2ubuntu1 fixed in 5.2.5-2ubuntu1.1 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2023-2975 | MEDIUM4.5 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.12 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2026-42766 | MEDIUM4.5 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.25 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2026-42767 | MEDIUM4.5 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.25 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2026-48525 | MEDIUM4.5 | PyJWT 2.8.0 fixed in 2.13.0 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2026-34073 | MEDIUM4.5 | cryptography 41.0.4 fixed in 46.0.6 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2026-45409 | MEDIUM4.5 | idna 3.4 fixed in 3.15 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-27448 | MEDIUM4.5 | pyOpenSSL 23.2.0 fixed in 26.0.0 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2024-47081 | MEDIUM4.5 | requests 2.31.0 fixed in 2.32.4 | 0.8% Theoretical Threat | Directly Exposed |
| CVE-2026-35536 | MEDIUM4.5 | tornado 6.3.3 fixed in 6.5.5 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2026-44431 | MEDIUM4.5 | urllib3 2.0.7 fixed in 2.7.0 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2024-28085 | MEDIUM4.4 | libblkid1 2.37.2-4ubuntu3 fixed in 2.37.2-4ubuntu3.4 | 2.2% Low-Moderate Risk | Directly Exposed |
| CVE-2024-28085 | MEDIUM4.4 | libmount1 2.37.2-4ubuntu3 fixed in 2.37.2-4ubuntu3.4 | 2.2% Low-Moderate Risk | Directly Exposed |
| CVE-2024-28085 | MEDIUM4.4 | libsmartcols1 2.37.2-4ubuntu3 fixed in 2.37.2-4ubuntu3.4 | 2.2% Low-Moderate Risk | Directly Exposed |
| CVE-2024-28085 | MEDIUM4.4 | libuuid1 2.37.2-4ubuntu3 fixed in 2.37.2-4ubuntu3.4 | 2.2% Low-Moderate Risk | Directly Exposed |
| CVE-2024-28835 | MEDIUM4.25 | libgnutls30 3.7.3-4ubuntu1.2 fixed in 3.7.3-4ubuntu1.5 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-34180 | MEDIUM4.25 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.25 | 0.5% Theoretical Threat | Directly Exposed |
| CVE-2024-6345 | MEDIUM4.22 | setuptools 68.2.2 fixed in 70.0.0 | 1.8% Low-Moderate Risk | Post-ExploitContext importance: MEDIUM |
| CVE-2025-47273 | MEDIUM4.22 | setuptools 68.2.2 fixed in 78.1.1 | 1.4% Low-Moderate Risk | Post-ExploitContext importance: MEDIUM |
| CVE-2026-24842 | MEDIUM4.18 | tar 6.1.15 fixed in 7.5.7 | 0.5% Theoretical Threat | Post-Exploit |
| CVE-2026-28387 | MEDIUM4.13 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.23 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2024-2961 | MEDIUM4.12 | libc-bin 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.7 | 88.3% Actively Exploited | Post-Exploit |
| CVE-2024-2961 | MEDIUM4.12 | libc6 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.7 | 88.3% Actively Exploited | Post-Exploit |
| CVE-2023-4039 | MEDIUM4.08 | gcc-12-base 12.3.0-1ubuntu1~22.04 fixed in 12.3.0-1ubuntu1~22.04.2 | 0.7% Theoretical Threat | Directly Exposed |
| CVE-2023-4039 | MEDIUM4.08 | libgcc-s1 12.3.0-1ubuntu1~22.04 fixed in 12.3.0-1ubuntu1~22.04.2 | 0.7% Theoretical Threat | Directly Exposed |
| CVE-2023-4039 | MEDIUM4.08 | libstdc++6 12.3.0-1ubuntu1~22.04 fixed in 12.3.0-1ubuntu1~22.04.2 | 0.7% Theoretical Threat | Directly Exposed |
| CVE-2025-15467 | MEDIUM4.06 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.21 | 48.7% High Exploitation Risk | Post-Exploit |
| CVE-2025-15467 | MEDIUM4.06 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.21 | 48.7% High Exploitation Risk | Post-Exploit |
| CVE-2026-27456 | MEDIUM4 | libblkid1 2.37.2-4ubuntu3 No fix yet | 0.1% Theoretical Threat | Directly Exposed |
| CVE-2026-27456 | MEDIUM4 | libmount1 2.37.2-4ubuntu3 No fix yet | 0.1% Theoretical Threat | Directly Exposed |
| CVE-2026-27456 | MEDIUM4 | libsmartcols1 2.37.2-4ubuntu3 No fix yet | 0.1% Theoretical Threat | Directly Exposed |
| CVE-2024-13176 | MEDIUM4 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.19 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2025-68160 | MEDIUM4 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.21 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2025-4598 | MEDIUM4 | libsystemd0 249.11-0ubuntu3.10 fixed in 249.11-0ubuntu3.16 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2025-4598 | MEDIUM4 | libudev1 249.11-0ubuntu3.10 fixed in 249.11-0ubuntu3.16 | 0.6% Theoretical Threat | Directly Exposed |
| CVE-2026-27456 | MEDIUM4 | libuuid1 2.37.2-4ubuntu3 No fix yet | 0.1% Theoretical Threat | Directly Exposed |
| CVE-2024-33601 | MEDIUM4 | libc-bin 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.8 | 1.1% Low-Moderate Risk | Directly Exposed |
| CVE-2024-33601 | MEDIUM4 | libc6 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.8 | 1.1% Low-Moderate Risk | Directly Exposed |
| CVE-2022-3715 | LOW3.98 | bash 5.1-6ubuntu1 fixed in 5.1-6ubuntu1.1 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2023-47038 | LOW3.98 | perl-base 5.34.0-3ubuntu1.2 fixed in 5.34.0-3ubuntu1.3 | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2026-35535 | LOW3.98 | sudo 1.9.9-1ubuntu2.4 fixed in 1.9.9-1ubuntu2.6 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2023-6129 | LOW3.9 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.14 | 2.3% Low-Moderate Risk | Post-Exploit |
| CVE-2025-69421 | LOW3.82 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.21 | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2026-28388 | LOW3.82 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.23 | 0.9% Theoretical Threat | Post-Exploit |
| CVE-2026-28389 | LOW3.82 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.23 | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2026-28390 | LOW3.82 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.23 | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2026-34182 | LOW3.77 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.25 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2025-69419 | LOW3.77 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.21 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2024-21538 | LOW3.74 | cross-spawn 7.0.3 fixed in 7.0.5, 6.0.6 | 0.9% Theoretical Threat | Directly Exposed |
| CVE-2024-3596 | LOW3.73 | libgssapi-krb5-2 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.5 | 14.9% High Exploitation Risk | Post-Exploit |
| CVE-2024-3596 | LOW3.73 | libk5crypto3 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.5 | 14.9% High Exploitation Risk | Post-Exploit |
| CVE-2024-3596 | LOW3.73 | libkrb5-3 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.5 | 14.9% High Exploitation Risk | Post-Exploit |
| CVE-2024-3596 | LOW3.73 | libkrb5support0 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.5 | 14.9% High Exploitation Risk | Post-Exploit |
| CVE-2024-56406 | LOW3.72 | perl-base 5.34.0-3ubuntu1.2 fixed in 5.34.0-3ubuntu1.4 | 0.5% Theoretical Threat | Post-Exploit |
| CVE-2024-9143 | LOW3.7 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.19 | 6.0% Low-Moderate Risk | Directly Exposed |
| CVE-2021-31879 | LOW3.66 | wget 1.21.2-2ubuntu1 No fix yet | 1.1% Low-Moderate Risk | Post-Exploit |
| CVE-2023-49080 | LOW3.65 | jupyter_server 2.8.0 fixed in 2.11.2 | 0.8% Theoretical Threat | Directly Exposed |
| CVE-2025-59842 | LOW3.65 | jupyterlab 4.0.7 fixed in 4.4.8 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2026-26960 | LOW3.62 | tar 6.1.15 fixed in 7.5.8 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2025-68973 | LOW3.57 | gpgv 2.2.27-3ubuntu2.1 fixed in 2.2.27-3ubuntu2.5 | 0.1% Theoretical Threat | Post-Exploit |
| CVE-2025-8058 | LOW3.57 | libc-bin 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.11 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2025-8058 | LOW3.57 | libc6 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.11 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2026-48522 | LOW3.57 | PyJWT 2.8.0 fixed in 2.13.0 | 0.1% Theoretical Threat | Directly Exposed |
| CVE-2023-6237 | LOW3.54 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.14 | 2.3% Low-Moderate Risk | Post-Exploit |
| CVE-2024-5535 | LOW3.54 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.17 | 5.6% Low-Moderate Risk | Post-Exploit |
| CVE-2022-48522 | LOW3.53 | perl-base 5.34.0-3ubuntu1.2 fixed in 5.34.0-3ubuntu1.3 | 2.0% Low-Moderate Risk | Post-Exploit |
| CVE-2024-29415 | LOW3.53 | ip 2.0.0 No fix yet | 8.3% Low-Moderate Risk | Post-Exploit |
| CVE-2023-42282 | LOW3.53 | ip 2.0.0 fixed in 2.0.1, 1.1.9 | 1.6% Low-Moderate Risk | Post-Exploit |
| CVE-2024-6119 | LOW3.51 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.18 | 66.6% Actively Exploited | Post-Exploit |
| CVE-2024-6119 | LOW3.51 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.18 | 66.6% Actively Exploited | Post-Exploit |
| CVE-2024-33602 | LOW3.4 | libc-bin 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.8 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2024-33602 | LOW3.4 | libc6 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.8 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2025-9820 | LOW3.4 | libgnutls30 3.7.3-4ubuntu1.2 fixed in 3.7.3-4ubuntu1.8 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2025-69418 | LOW3.4 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.21 | 0.1% Theoretical Threat | Directly Exposed |
| CVE-2026-3449 | LOW3.4 | @tootallnate/once 2.0.0 fixed in 3.0.1, 2.0.1 | 0.1% Theoretical Threat | Directly Exposed |
| CVE-2025-9230 | LOW3.36 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.20 | 1.8% Low-Moderate Risk | Post-Exploit |
| CVE-2024-4741 | LOW3.36 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.17 | 2.9% Low-Moderate Risk | Post-Exploit |
| CVE-2024-28863 | LOW3.31 | tar 6.1.15 fixed in 6.2.1 | 0.9% Theoretical Threat | Post-Exploit |
| CVE-2024-0727 | LOW3.3 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.14 | 3.2% Low-Moderate Risk | Post-Exploit |
| CVE-2024-37371 | LOW3.28 | libgssapi-krb5-2 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.4 | 1.9% Low-Moderate Risk | Post-Exploit |
| CVE-2024-37371 | LOW3.28 | libk5crypto3 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.4 | 1.9% Low-Moderate Risk | Post-Exploit |
| CVE-2024-37371 | LOW3.28 | libkrb5-3 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.4 | 1.9% Low-Moderate Risk | Post-Exploit |
| CVE-2024-37371 | LOW3.28 | libkrb5support0 1.19.2-2ubuntu0.2 fixed in 1.19.2-2ubuntu0.4 | 1.9% Low-Moderate Risk | Post-Exploit |
| CVE-2021-46848 | LOW3.28 | libtasn1-6 4.18.0-4build1 fixed in 4.18.0-4ubuntu0.2 | 2.1% Low-Moderate Risk | Post-Exploit |
| CVE-2026-5958 | LOW3.21 | sed 4.8-1ubuntu2 fixed in 4.8-1ubuntu2.1 | 0.1% Theoretical Threat | Post-Exploit |
| CVE-2026-29786 | LOW3.21 | tar 6.1.15 fixed in 7.5.10 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2023-3446 | LOW3.18 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.12 | 5.5% Low-Moderate Risk | Post-Exploit |
| CVE-2023-3817 | LOW3.18 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.12 | 2.6% Low-Moderate Risk | Post-Exploit |
| CVE-2023-5678 | LOW3.18 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.14 | 4.5% Low-Moderate Risk | Post-Exploit |
| CVE-2024-4603 | LOW3.18 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.17 | 1.1% Low-Moderate Risk | Post-Exploit |
| CVE-2026-3832 | LOW3.15 | libgnutls30 3.7.3-4ubuntu1.2 fixed in 3.7.3-4ubuntu1.9 | 0.3% Theoretical Threat | Directly Exposed |
| CVE-2026-45446 | LOW3.15 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.25 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2026-23745 | LOW3.11 | tar 6.1.15 fixed in 7.5.3 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2026-31790 | LOW3.01 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.23 | 1.0% Theoretical Threat | Post-Exploit |
| CVE-2025-69420 | LOW3.01 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.21 | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2026-22796 | LOW3.01 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.21 | 0.5% Theoretical Threat | Post-Exploit |
| CVE-2026-42770 | LOW3.01 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.25 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-9076 | LOW3.01 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.25 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2025-40909 | LOW3.01 | perl-base 5.34.0-3ubuntu1.2 fixed in 5.34.0-3ubuntu1.5 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-23950 | LOW3.01 | tar 6.1.15 fixed in 7.5.4 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-42010 | LOW3 | libgnutls30 3.7.3-4ubuntu1.2 fixed in 3.7.3-4ubuntu1.9 | 0.8% Theoretical Threat | Post-Exploit |
| CVE-2026-31789 | LOW3 | libssl3 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.23 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-31789 | LOW3 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.23 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-27459 | LOW3 | pyOpenSSL 23.2.0 fixed in 26.0.0 | 0.5% Theoretical Threat | Post-Exploit |
| CVE-2026-6357 | LOW2.96 | pip 23.3 fixed in 26.1 | 0.1% Theoretical Threat | Post-Exploit |
| CVE-2025-32988 | LOW2.95 | libgnutls30 3.7.3-4ubuntu1.2 fixed in 3.7.3-4ubuntu1.7 | 1.2% Low-Moderate Risk | Post-Exploit |
| CVE-2026-45447 | LOW2.92 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.25 | 1.4% Low-Moderate Risk | Post-Exploit |
| CVE-2024-2511 | LOW2.89 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.17 | 54.0% Actively Exploited | Post-Exploit |
| CVE-2025-45582 | LOW2.86 | tar 1.34+dfsg-1ubuntu0.1.22.04.1 No fix yet | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2023-4641 | LOW2.8 | login 1:4.8.1-2ubuntu2.1 fixed in 1:4.8.1-2ubuntu2.2 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2026-22795 | LOW2.8 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.21 | 0.1% Theoretical Threat | Post-Exploit |
| CVE-2026-7383 | LOW2.8 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.25 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2023-4641 | LOW2.8 | passwd 1:4.8.1-2ubuntu2.1 fixed in 1:4.8.1-2ubuntu2.2 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2026-31802 | LOW2.8 | tar 6.1.15 fixed in 7.5.11 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2026-24049 | LOW2.8 | wheel 0.41.2 fixed in 0.46.2 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2023-4016 | LOW2.8 | libprocps8 2:3.3.17-6ubuntu2 fixed in 2:3.3.17-6ubuntu2.1 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2026-40228 | LOW2.8 | libsystemd0 249.11-0ubuntu3.10 No fix yet | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2026-40228 | LOW2.8 | libudev1 249.11-0ubuntu3.10 No fix yet | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2026-4539 | LOW2.8 | Pygments 2.16.1 fixed in 2.20.0 | 0.2% Theoretical Threat | Directly Exposed |
| CVE-2023-2975 | LOW2.7 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.12 | 0.5% Theoretical Threat | Post-Exploit |
| CVE-2026-42766 | LOW2.7 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.25 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2026-42767 | LOW2.7 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.25 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2025-8869 | LOW2.7 | pip 23.3 fixed in 25.3 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2024-28085 | LOW2.64 | bsdutils 1:2.37.2-4ubuntu3 fixed in 2.37.2-4ubuntu3.4 | 2.2% Low-Moderate Risk | Post-Exploit |
| CVE-2024-28085 | LOW2.64 | mount 2.37.2-4ubuntu3 fixed in 2.37.2-4ubuntu3.4 | 2.2% Low-Moderate Risk | Post-Exploit |
| CVE-2024-28085 | LOW2.64 | util-linux 2.37.2-4ubuntu3 fixed in 2.37.2-4ubuntu3.4 | 2.2% Low-Moderate Risk | Post-Exploit |
| CVE-2025-5889 | LOW2.63 | brace-expansion 1.1.11 fixed in 2.0.2, 1.1.12, 3.0.1, 4.0.1 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2025-5889 | LOW2.63 | brace-expansion 2.0.1 fixed in 2.0.2, 1.1.12, 3.0.1, 4.0.1 | 0.4% Theoretical Threat | Directly Exposed |
| CVE-2026-34180 | LOW2.55 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.25 | 0.5% Theoretical Threat | Post-Exploit |
| CVE-2026-3219 | LOW2.55 | pip 23.3 fixed in 26.1 | 0.1% Theoretical Threat | Post-Exploit |
| CVE-2026-27456 | LOW2.4 | bsdutils 1:2.37.2-4ubuntu3 No fix yet | 0.1% Theoretical Threat | Post-Exploit |
| CVE-2025-30258 | LOW2.4 | gpgv 2.2.27-3ubuntu2.1 fixed in 2.2.27-3ubuntu2.3 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-27456 | LOW2.4 | mount 2.37.2-4ubuntu3 No fix yet | 0.1% Theoretical Threat | Post-Exploit |
| CVE-2024-13176 | LOW2.4 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.19 | 0.6% Theoretical Threat | Post-Exploit |
| CVE-2025-68160 | LOW2.4 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.21 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2026-27456 | LOW2.4 | util-linux 2.37.2-4ubuntu3 No fix yet | 0.1% Theoretical Threat | Post-Exploit |
| CVE-2024-9143 | LOW2.22 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.19 | 6.0% Low-Moderate Risk | Post-Exploit |
| CVE-2025-69418 | LOW2.04 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.21 | 0.1% Theoretical Threat | Post-Exploit |
| CVE-2026-1703 | LOW1.99 | pip 23.3 fixed in 26.0 | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2026-45446 | LOW1.89 | openssl 3.0.2-0ubuntu1.10 fixed in 3.0.2-0ubuntu1.25 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2024-56433 | LOW1.84 | login 1:4.8.1-2ubuntu2.1 No fix yet | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2024-56433 | LOW1.84 | passwd 1:4.8.1-2ubuntu2.1 No fix yet | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2023-29383 | LOW1.68 | login 1:4.8.1-2ubuntu2.1 No fix yet | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2023-29383 | LOW1.68 | passwd 1:4.8.1-2ubuntu2.1 No fix yet | 0.4% Theoretical Threat | Post-Exploit |
| CVE-2023-4016 | LOW1.68 | procps 2:3.3.17-6ubuntu2 fixed in 2:3.3.17-6ubuntu2.1 | 0.2% Theoretical Threat | Post-Exploit |
| CVE-2023-39804 | LOW1.68 | tar 1.34+dfsg-1ubuntu0.1.22.04.1 fixed in 1.34+dfsg-1ubuntu0.1.22.04.2 | 0.3% Theoretical Threat | Post-Exploit |
| CVE-2024-2961 | NONE0 | locales 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.7 | 88.3% Actively Exploited | Not Applicable |
| CVE-2026-0861 | NONE0 | locales 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.13 | 0.4% Theoretical Threat | Not Applicable |
| CVE-2025-6020 | NONE0 | libpam-modules 1.4.0-11ubuntu2.3 fixed in 1.4.0-11ubuntu2.6 | 0.4% Theoretical Threat | Not Applicable |
| CVE-2025-6020 | NONE0 | libpam-modules-bin 1.4.0-11ubuntu2.3 fixed in 1.4.0-11ubuntu2.6 | 0.4% Theoretical Threat | Not Applicable |
| CVE-2025-6020 | NONE0 | libpam-runtime 1.4.0-11ubuntu2.3 fixed in 1.4.0-11ubuntu2.6 | 0.4% Theoretical Threat | Not Applicable |
| CVE-2025-6020 | NONE0 | libpam0g 1.4.0-11ubuntu2.3 fixed in 1.4.0-11ubuntu2.6 | 0.4% Theoretical Threat | Not Applicable |
| CVE-2024-33599 | NONE0 | locales 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.8 | 1.3% Low-Moderate Risk | Not Applicable |
| CVE-2023-5156 | NONE0 | locales 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.5 | 1.3% Low-Moderate Risk | Not Applicable |
| CVE-2025-4802 | NONE0 | locales 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.10 | 0.4% Theoretical Threat | Not Applicable |
| CVE-2023-50495 | NONE0 | libncurses6 6.3-2ubuntu0.1 No fix yet | 1.0% Theoretical Threat | Not Applicable |
| CVE-2023-50495 | NONE0 | libncursesw6 6.3-2ubuntu0.1 No fix yet | 1.0% Theoretical Threat | Not Applicable |
| CVE-2023-50495 | NONE0 | libtinfo6 6.3-2ubuntu0.1 No fix yet | 1.0% Theoretical Threat | Not Applicable |
| CVE-2026-6238 | NONE0 | locales 2.35-0ubuntu3.4 No fix yet | 0.3% Theoretical Threat | Not Applicable |
| CVE-2023-50495 | NONE0 | ncurses-base 6.3-2ubuntu0.1 No fix yet | 1.0% Theoretical Threat | Not Applicable |
| CVE-2023-50495 | NONE0 | ncurses-bin 6.3-2ubuntu0.1 No fix yet | 1.0% Theoretical Threat | Not Applicable |
| CVE-2025-15281 | NONE0 | locales 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.13 | 0.3% Theoretical Threat | Not Applicable |
| CVE-2026-5435 | NONE0 | locales 2.35-0ubuntu3.4 No fix yet | 0.2% Theoretical Threat | Not Applicable |
| CVE-2023-4806 | NONE0 | locales 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.5 | 1.4% Low-Moderate Risk | Not Applicable |
| CVE-2023-4813 | NONE0 | locales 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.5 | 1.7% Low-Moderate Risk | Not Applicable |
| CVE-2024-22365 | NONE0 | libpam-modules 1.4.0-11ubuntu2.3 fixed in 1.4.0-11ubuntu2.4 | 0.5% Theoretical Threat | Not Applicable |
| CVE-2024-22365 | NONE0 | libpam-modules-bin 1.4.0-11ubuntu2.3 fixed in 1.4.0-11ubuntu2.4 | 0.5% Theoretical Threat | Not Applicable |
| CVE-2024-22365 | NONE0 | libpam-runtime 1.4.0-11ubuntu2.3 fixed in 1.4.0-11ubuntu2.4 | 0.5% Theoretical Threat | Not Applicable |
| CVE-2024-22365 | NONE0 | libpam0g 1.4.0-11ubuntu2.3 fixed in 1.4.0-11ubuntu2.4 | 0.5% Theoretical Threat | Not Applicable |
| CVE-2025-0395 | NONE0 | locales 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.9 | 0.3% Theoretical Threat | Not Applicable |
| CVE-2024-33600 | NONE0 | locales 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.8 | 1.2% Low-Moderate Risk | Not Applicable |
| CVE-2026-0915 | NONE0 | locales 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.13 | 0.6% Theoretical Threat | Not Applicable |
| CVE-2026-4046 | NONE0 | locales 2.35-0ubuntu3.4 No fix yet | 0.4% Theoretical Threat | Not Applicable |
| CVE-2025-8058 | NONE0 | locales 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.11 | 0.2% Theoretical Threat | Not Applicable |
| CVE-2024-33601 | NONE0 | locales 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.8 | 1.1% Low-Moderate Risk | Not Applicable |
| CVE-2024-33602 | NONE0 | locales 2.35-0ubuntu3.4 fixed in 2.35-0ubuntu3.8 | 0.4% Theoretical Threat | Not Applicable |
| CVE-2025-6297 | NONE0 | dpkg 1.21.1ubuntu2.2 fixed in 1.21.1ubuntu2.6 | 0.3% Theoretical Threat | Not Applicable |
| GHSA-r4q5-vmmm-2653 | NONE0 | follow-redirects 1.15.2 fixed in 1.16.0 | — | Not Applicable |
| CVE-2024-38999 | NONE0 | requirejs 2.3.6 fixed in 2.3.7 | 0.7% Theoretical Threat | Not Applicable |
| CVE-2026-53655 | NONE0 | tar 6.1.15 fixed in 7.5.16 | — | Not Applicable |
| GHSA-gj48-438w-jh9v | NONE0 | bleach 6.1.0 fixed in 6.4.0 | — | Not Applicable |
| GHSA-8rfp-98v4-mmr6 | NONE0 | bleach 6.1.0 fixed in 6.4.0 | — | Not Applicable |
| GHSA-537c-gmf6-5ccf | NONE0 | cryptography 41.0.4 fixed in 48.0.1 | — | Not Applicable |
| GHSA-h4gh-qq45-vh27 | NONE0 | cryptography 41.0.4 fixed in 43.0.1 | — | Not Applicable |
| CVE-2025-30167 | NONE0 | jupyter_core 5.4.0 fixed in 5.8.1 | 0.1% Theoretical Threat | Not Applicable |
| CVE-2026-44727 | NONE0 | jupyter_server 2.8.0 fixed in 2.20.0 | — | Not Applicable |
| CVE-2026-40171 | NONE0 | jupyterlab 4.0.7 fixed in 4.5.7 | 0.5% Theoretical Threat | Not Applicable |
| CVE-2026-42266 | NONE0 | jupyterlab 4.0.7 fixed in 4.5.7 | 0.5% Theoretical Threat | Not Applicable |
| GHSA-vmhf-c436-hxj4 | NONE0 | jupyterlab 4.0.7 fixed in 4.5.9 | — | Not Applicable |
| CVE-2026-40171 | NONE0 | notebook 7.0.6 fixed in 7.5.6 | 0.5% Theoretical Threat | Not Applicable |
| CVE-2026-49853 | NONE0 | tornado 6.3.3 fixed in 6.5.6 | — | Not Applicable |
| CVE-2026-49855 | NONE0 | tornado 6.3.3 fixed in 6.5.6 | — | Not Applicable |
| GHSA-753j-mpmx-qq6g | NONE0 | tornado 6.3.3 fixed in 6.4.1 | — | Not Applicable |
| GHSA-78cv-mqj4-43f7 | NONE0 | tornado 6.3.3 fixed in 6.5.5 | — | Not Applicable |
| GHSA-pw6j-qg29-8w7f | NONE0 | tornado 6.3.3 fixed in 6.5.7 | — | Not Applicable |
| GHSA-w235-7p84-xx57 | NONE0 | tornado 6.3.3 fixed in 6.4.1 | — | Not Applicable |
| CVE-2026-49854 | NONE0 | tornado 6.3.3 fixed in 6.5.6 | — | Not Applicable |