Arbitrary Argument Injection Affecting jupyterlab package, versions [4.0.0,4.5.11)[4.6.0,4.6.4)


Severity

Recommended
0.0
medium
0
10

CVSS assessment by Snyk's Security Team. Learn more

Threat Intelligence

EPSS
0.21% (10th percentile)

Do your applications use this vulnerable package?

In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.

Test your applications
  • Snyk IDSNYK-PYTHON-JUPYTERLAB-20335547
  • published30 Sept 2026
  • disclosed29 Sept 2026
  • creditRex Liu, Michał Krassowski

Introduced: 29 Sep 2026

NewCVE-2026-102904  (opens in a new tab)
CWE-88  (opens in a new tab)

How to fix?

Upgrade jupyterlab to version 4.5.11, 4.6.4 or higher.

Overview

jupyterlab is a JupyterLab computational environment.

Affected versions of this package are vulnerable to Arbitrary Argument Injection via the uninstall function in jupyterlab/extensions/pypi.py, where extension names passed to the uninstall endpoint are not validated before being forwarded to pip uninstall as command-line arguments. An authenticated attacker can supply a malformed or adversarial extension name that is interpreted as a pip flag or option, allowing unintended pip behavior to be triggered through the extension manager API.

Note: This is only exploitable when the PyPI Extension Manager is enabled and kernels and terminals are disabled or delegated to remote hosts, otherwise a user with kernel access can already read files and make outbound requests directly.

CVSS Base Scores

version 4.0
version 3.1