In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade jupyterlab to version 4.5.10, 4.6.2 or higher.
jupyterlab is a JupyterLab computational environment.
Affected versions of this package are vulnerable to Incorrect Authorization in the enforcement of plugin manager lock rules via direct API requests to /lab/api/plugins. An attacker can circumvent administrative restrictions on enabling or disabling plugins by sending crafted requests directly to the API, potentially impacting data integrity and bypassing user action restrictions implemented through locked plugins.